Skip to content

Fix cleanup policy update conditions for Confluent Cloud #254

Fix cleanup policy update conditions for Confluent Cloud

Fix cleanup policy update conditions for Confluent Cloud #254

Workflow file for this run

name: Build
on:
push:
branches:
- 'master'
pull_request:
branches:
- 'master'
- 'hotfix/v*.*.*'
schedule:
- cron: '0 5 * * 1'
jobs:
build:
name: Build
runs-on: ubuntu-latest
steps:
- name: Checkout project
uses: actions/checkout@v5
with:
fetch-depth: 0
- name: Set up JDK 21
uses: actions/setup-java@v5
with:
java-version: '21'
distribution: 'temurin'
- name: Cache SonarCloud packages
uses: actions/cache@v4
with:
path: ~/.sonar/cache
key: ${{ runner.os }}-sonar
restore-keys: ${{ runner.os }}-sonar
- name: Cache Gradle packages
uses: actions/cache@v4
with:
path: ~/.gradle/caches
key: ${{ runner.os }}-gradle-${{ hashFiles('**/*.gradle') }}
restore-keys: ${{ runner.os }}-gradle
- name: Lint
run: ./gradlew spotlessCheck
- name: Build
run: ./gradlew build --info
- name: Publish test report
if: always()
uses: mikepenz/action-junit-report@v5
with:
report_paths: '**/build/test-results/test/TEST-*.xml'
- name: Sonar
if: github.event.pull_request.head.repo.fork == false
run: ./gradlew jacocoTestReport sonar
env:
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }}
- name: Grype source code
id: grype_source_code
uses: anchore/scan-action@v6
with:
path: .
fail-build: true
severity-cutoff: high
only-fixed: true
- name: Upload Grype source code report
if: always() && steps.grype_source_code.outputs.sarif != ''
uses: github/codeql-action/upload-sarif@v3
with:
sarif_file: ${{ steps.grype_source_code.outputs.sarif }}
category: 'source-code'
- name: Metadata
id: metadata
run: echo current_version=$(echo $(./gradlew properties --no-daemon --console=plain -q | grep "^version:" | awk '{printf $2}')) >> $GITHUB_OUTPUT
- name: Upload artifact
uses: actions/upload-artifact@v4
with:
name: ns4kafka
path: ${{ github.workspace }}/build/libs/ns4kafka-${{ steps.metadata.outputs.current_version }}.jar
- name: Docker
run: ./gradlew dockerBuild
- name: Grype Docker image
id: grype_docker_image
uses: anchore/scan-action@v6
with:
image: michelin/ns4kafka:${{ steps.metadata.outputs.current_version }}
fail-build: true
severity-cutoff: high
only-fixed: true
- name: Upload Grype Docker image report
if: always() && steps.grype_docker_image.outputs.sarif != ''
uses: github/codeql-action/upload-sarif@v3
with:
sarif_file: ${{ steps.grype_docker_image.outputs.sarif }}
category: 'docker-image'
- name: Docker login
if: github.ref == 'refs/heads/master'
uses: docker/login-action@v3
with:
username: ${{ secrets.MICHELIN_DOCKER_HUB_USERNAME }}
password: ${{ secrets.MICHELIN_DOCKER_HUB_PASSWD }}
- name: Docker push
if: github.ref == 'refs/heads/master'
run: ./gradlew dockerBuild dockerPush