From 587244cf4a02fc3a6d73430eb084660881778073 Mon Sep 17 00:00:00 2001 From: kruplm <73655443+kruplm@users.noreply.github.com> Date: Fri, 10 Jan 2025 13:45:08 +0100 Subject: [PATCH] chore(Workflows): Add dependency-submission workflow to update the Dependency Graph with CPM Nuget dependencies --- .github/workflows/dependency-submission.yml | 27 +++++++++++++++++++++ 1 file changed, 27 insertions(+) create mode 100644 .github/workflows/dependency-submission.yml diff --git a/.github/workflows/dependency-submission.yml b/.github/workflows/dependency-submission.yml new file mode 100644 index 000000000..c17783451 --- /dev/null +++ b/.github/workflows/dependency-submission.yml @@ -0,0 +1,27 @@ +name: Dependency Submission + +on: + workflow_dispatch: + schedule: + - cron: 0 19 * * * #7 PM ET + + +permissions: + id-token: write + contents: write + +jobs: + dependency-submission: + runs-on: windows-latest + steps: + - uses: actions/checkout@v3 + - name: Build Components + run: | + npm i + npx lerna run build --stream + powershell ./build/dotnet-restore.ps1 + powershell ./build/dotnet-build.ps1 + - name: Component detection + uses: advanced-security/component-detection-dependency-submission-action@v0.0.4 + with: + detectorsFilter: "Npm,NuGet"