Add manual SonarQube full scan workflow
- Manual trigger only (workflow_dispatch) - Full pipeline: bun install, bun build, PHPUnit with coverage - Force SonarQube to re-analyze all files (forceReloadAll) Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
This commit is contained in:
80
.gitea/workflows/sonarqube.yml
Normal file
80
.gitea/workflows/sonarqube.yml
Normal file
@@ -0,0 +1,80 @@
|
||||
name: SonarQube Full Scan
|
||||
|
||||
on:
|
||||
workflow_dispatch:
|
||||
|
||||
jobs:
|
||||
scan:
|
||||
runs_on: ubuntu-latest
|
||||
services:
|
||||
database:
|
||||
image: postgres:16-alpine
|
||||
env:
|
||||
POSTGRES_USER: app
|
||||
POSTGRES_PASSWORD: secret
|
||||
POSTGRES_DB: e_ticket
|
||||
options: >-
|
||||
--health-cmd "pg_isready -U app -d e_ticket"
|
||||
--health-interval 5s
|
||||
--health-timeout 5s
|
||||
--health-retries 5
|
||||
redis:
|
||||
image: redis:7-alpine
|
||||
options: >-
|
||||
--health-cmd "redis-cli ping"
|
||||
--health-interval 5s
|
||||
--health-timeout 5s
|
||||
--health-retries 5
|
||||
env:
|
||||
DATABASE_URL: "postgresql://app:secret@database:5432/e_ticket?serverVersion=16&charset=utf8"
|
||||
MESSENGER_TRANSPORT_DSN: "redis://redis:6379/messages"
|
||||
MAILER_DSN: "null://null"
|
||||
APP_ENV: test
|
||||
steps:
|
||||
- name: Checkout
|
||||
uses: actions/checkout@v4
|
||||
with:
|
||||
fetch-depth: 0
|
||||
|
||||
- name: Setup PHP
|
||||
uses: shivammathur/setup-php@v2
|
||||
with:
|
||||
php-version: '8.4'
|
||||
extensions: intl, pdo_pgsql, zip, gd, redis, imagick
|
||||
coverage: xdebug
|
||||
|
||||
- name: Setup Node.js
|
||||
uses: actions/setup-node@v3
|
||||
with:
|
||||
node-version: '22'
|
||||
|
||||
- name: Setup Bun
|
||||
uses: oven-sh/setup-bun@v1
|
||||
|
||||
- name: Install PHP dependencies
|
||||
run: composer install --no-interaction --prefer-dist
|
||||
|
||||
- name: Install JS dependencies
|
||||
run: bun install
|
||||
|
||||
- name: Build assets
|
||||
run: bun run build
|
||||
|
||||
- name: Create test database
|
||||
run: php bin/console doctrine:database:create --env=test --if-not-exists
|
||||
|
||||
- name: Create database schema
|
||||
run: php bin/console doctrine:schema:create --env=test
|
||||
|
||||
- name: PHPUnit with coverage
|
||||
run: vendor/bin/phpunit --coverage-clover coverage.xml
|
||||
|
||||
- name: SonarQube Scan
|
||||
uses: sonarsource/sonarqube-scan-action@v5
|
||||
with:
|
||||
args: >
|
||||
-Dsonar.qualitygate.wait=true
|
||||
-Dsonar.scm.forceReloadAll=true
|
||||
env:
|
||||
SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }}
|
||||
SONAR_HOST_URL: https://sn.esy-web.dev
|
||||
Reference in New Issue
Block a user