name: FOSSA on: push: branches: - main concurrency: group: ${{ github.workflow }}-${{ github.ref }} cancel-in-progress: true permissions: contents: read jobs: fossa-scan: runs-on: ubuntu-latest steps: - name: Checkout uses: actions/checkout@8f4b7f84864484a7bf31766abe9204da3cbe65b3 # v3.5.0 - name: Check secret id: checksecret uses: ./.github/actions/is-defined with: value: ${{ secrets.FOSSA_API_KEY }} - name: Setup build env if: steps.checksecret.outputs.result == 'true' uses: ./.github/actions/setup-build-env - name: Run FOSSA analysis if: steps.checksecret.outputs.result == 'true' uses: fossas/fossa-action@f61a4c0c263690f2ddb54b9822a719c25a7b608f # v1.3.1 with: api-key: ${{ secrets.FOSSA_API_KEY }}