ci: Enable Coverity Scan
https://scan.coverity.com/projects/image-builder-frontend
This commit is contained in:
parent
ba4cb73d1a
commit
2782342cb3
1 changed files with 38 additions and 0 deletions
38
.github/workflows/coverity_scan.yml
vendored
Normal file
38
.github/workflows/coverity_scan.yml
vendored
Normal file
|
|
@ -0,0 +1,38 @@
|
|||
name: Coverity Scan
|
||||
|
||||
on:
|
||||
# https://docs.github.com/en/actions/learn-github-actions/events-that-trigger-workflows#scheduled-events
|
||||
schedule:
|
||||
- cron: @daily
|
||||
|
||||
jobs:
|
||||
coverity_scan:
|
||||
runs-on: ubuntu-latest
|
||||
steps:
|
||||
- name: Clone repository
|
||||
uses: actions/checkout@v2.3.4
|
||||
|
||||
# https://scan.coverity.com/projects/image-builder-frontend
|
||||
- name: Run coverity scan script
|
||||
env:
|
||||
COVERITY_SCAN_PROJECT_NAME: "image-builder-frontend"
|
||||
COVERITY_SCAN_TOKEN: ${{ secrets.COVERITY_SCAN_TOKEN }}
|
||||
COVERITY_SCAN_EMAIL: ${{ secrets.COVERITY_SCAN_EMAIL }}
|
||||
run: |
|
||||
echo "Downloading coverity scan package."
|
||||
curl -o /tmp/cov-analysis-linux64.tgz https://scan.coverity.com/download/linux64 \
|
||||
--form project="$COVERITY_SCAN_PROJECT_NAME" \
|
||||
--form token="$COVERITY_SCAN_TOKEN"
|
||||
tar xzvf /tmp/cov-analysis-linux64.tgz
|
||||
|
||||
mkdir bin
|
||||
./cov-analysis-linux64-*/bin/cov-build --dir cov-int --no-command --fs-capture-search ./
|
||||
tar czvf cov-int.tar.gz cov-int
|
||||
|
||||
echo "Uploading coverity scan result to http://scan.coverity.com"
|
||||
curl https://scan.coverity.com/builds?project="$COVERITY_SCAN_PROJECT_NAME" \
|
||||
--form token="$COVERITY_SCAN_TOKEN" \
|
||||
--form email="$COVERITY_SCAN_EMAIL" \
|
||||
--form file=@cov-int.tar.gz \
|
||||
--form version="$(git rev-parse HEAD)" \
|
||||
--form description="$GITHUB_REF / $GITHUB_SHA"
|
||||
Loading…
Add table
Add a link
Reference in a new issue