add hashes to github action versions

Signed-off-by: Andy Scherzinger <info@andy-scherzinger.de>
This commit is contained in:
Andy Scherzinger 2022-12-16 12:24:03 +01:00
parent 0df576ba07
commit 0f89f5f477
No known key found for this signature in database
GPG Key ID: 6CADC7E3523C308B
5 changed files with 49 additions and 33 deletions

View File

@ -1,31 +1,34 @@
name: "Assemble" name: "Assemble"
on: on:
pull_request: pull_request:
branches: [ master, stable-* ] branches: [ master, stable-* ]
# Declare default permissions as read only.
permissions: read-all
jobs: jobs:
flavor: flavor:
runs-on: ubuntu-latest runs-on: ubuntu-latest
strategy: strategy:
fail-fast: false fail-fast: false
matrix: matrix:
flavor: [ Generic, Gplay ] flavor: [ Generic, Gplay ]
steps: steps:
- uses: actions/checkout@v3 - uses: actions/checkout@755da8c3cf115ac066823e79a1e1788f8940201b # v3
- name: set up JDK 11 - name: set up JDK 11
uses: actions/setup-java@v3 uses: actions/setup-java@1df8dbefe2a8cbc99770194893dd902763bee34b # v3
with: with:
distribution: "temurin" distribution: "temurin"
java-version: 11 java-version: 11
- name: Build ${{ matrix.flavor }} - name: Build ${{ matrix.flavor }}
run: | run: |
echo "org.gradle.jvmargs=-Xmx2g -XX:MaxMetaspaceSize=512m -XX:+HeapDumpOnOutOfMemoryError" >> gradle.properties echo "org.gradle.jvmargs=-Xmx2g -XX:MaxMetaspaceSize=512m -XX:+HeapDumpOnOutOfMemoryError" >> gradle.properties
./gradlew assemble${{ matrix.flavor }} ./gradlew assemble${{ matrix.flavor }}
- name: Archive apk - name: Archive apk
uses: actions/upload-artifact@v3 uses: actions/upload-artifact@v3
if: ${{ always() }} if: ${{ always() }}
with: with:
name: Nextcloud-APK name: Nextcloud-APK
path: app/build/outputs/apk/**/**/*.apk path: app/build/outputs/apk/**/**/*.apk
retention-days: 5 retention-days: 5

View File

@ -3,11 +3,14 @@ on:
pull_request_target: pull_request_target:
branches: [ master, stable-* ] branches: [ master, stable-* ]
permissions:
pull-requests: write
jobs: jobs:
auto-approve: auto-approve:
runs-on: ubuntu-latest runs-on: ubuntu-latest
steps: steps:
- uses: hmarr/auto-approve-action@v3.1.0 - uses: hmarr/auto-approve-action@de8ae18c173c131e182d4adf2c874d8d2308a85b # v3.1.0
if: github.actor == 'dependabot[bot]' || github.actor == 'dependabot-preview[bot]' if: github.actor == 'dependabot[bot]' || github.actor == 'dependabot-preview[bot]'
with: with:
github-token: "${{ secrets.GITHUB_TOKEN }}" github-token: "${{ secrets.GITHUB_TOKEN }}"

View File

@ -4,6 +4,9 @@ on:
pull_request: pull_request:
branches: [ master, stable-* ] branches: [ master, stable-* ]
# Declare default permissions as read only.
permissions: read-all
jobs: jobs:
check: check:
runs-on: ubuntu-latest runs-on: ubuntu-latest
@ -12,9 +15,9 @@ jobs:
matrix: matrix:
task: [ detekt, ktlintCheck ] task: [ detekt, ktlintCheck ]
steps: steps:
- uses: actions/checkout@v3 - uses: actions/checkout@755da8c3cf115ac066823e79a1e1788f8940201b # v3
- name: Set up JDK 11 - name: Set up JDK 11
uses: actions/setup-java@v3 uses: actions/setup-java@1df8dbefe2a8cbc99770194893dd902763bee34b # v3
with: with:
distribution: "temurin" distribution: "temurin"
java-version: 11 java-version: 11

View File

@ -4,10 +4,13 @@ on:
pull_request: pull_request:
branches: [ master, stable-* ] branches: [ master, stable-* ]
# Declare default permissions as read only.
permissions: read-all
jobs: jobs:
validation: validation:
name: "Validation" name: "Validation"
runs-on: ubuntu-latest runs-on: ubuntu-latest
steps: steps:
- uses: actions/checkout@v3 - uses: actions/checkout@755da8c3cf115ac066823e79a1e1788f8940201b # v3
- uses: gradle/wrapper-validation-action@v1 - uses: gradle/wrapper-validation-action@55e685c48d84285a5b0418cd094606e199cca3b6 # v1

View File

@ -4,6 +4,10 @@ on:
pull_request: pull_request:
branches: [ master, stable-* ] branches: [ master, stable-* ]
permissions:
pull-requests: write
contents: read
jobs: jobs:
qa: qa:
runs-on: ubuntu-latest runs-on: ubuntu-latest
@ -11,11 +15,11 @@ jobs:
- name: Check if secrets are available - name: Check if secrets are available
run: echo "::set-output name=ok::${{ secrets.KS_PASS != '' }}" run: echo "::set-output name=ok::${{ secrets.KS_PASS != '' }}"
id: check-secrets id: check-secrets
- uses: actions/checkout@v3 - uses: actions/checkout@755da8c3cf115ac066823e79a1e1788f8940201b # v3
if: ${{ steps.check-secrets.outputs.ok == 'true' }} if: ${{ steps.check-secrets.outputs.ok == 'true' }}
- name: set up JDK 11 - name: set up JDK 11
uses: actions/setup-java@1df8dbefe2a8cbc99770194893dd902763bee34b # v3
if: ${{ steps.check-secrets.outputs.ok == 'true' }} if: ${{ steps.check-secrets.outputs.ok == 'true' }}
uses: actions/setup-java@v3
with: with:
distribution: "temurin" distribution: "temurin"
java-version: 11 java-version: 11