advanced-security/SpotBugs with FindSecBugs

Run SpotBugs with FindSecBugs on your build results, and upload the results to GitHub Code Scanning

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
spotbugs_versionThe version of SpotBugs to useno4.7.3
spotbugs_checksumThe SHA256 checksum of the SpotBugs tarballnof02e2f1135b23f3edfddb75f64be0491353cfeb567b5a584115aa4fd373d4431
findsecbugs_versionThe version of FindSecBugs to useno1.12.0
spotbugs_targetThe target directory to run SpotBugs againstnotarget/
spotbugs_filename_globThe filenames to locate for SpotBugs, e.g. *.class, *.jar*.jar
upload_sarifWhether to upload the SARIF file to GitHub Code Scanningnotrue
java_distributionThe Java distribution to usenomicrosoft
java_versionThe Java version to useno11
no_cacheDo not use cached versions of the Spotbugs and FindSecBugs toolsnofalse
path_prefixAdd this path prefix to the start of file locationsno
ramThe amount of RAM to use for SpotBugs (in MB)no768
base_pathThe home directory of the runnerno/home/runner/work

no outputs