Skip to content

Bump step-security/harden-runner from 2.10.3 to 2.10.4 #750

Bump step-security/harden-runner from 2.10.3 to 2.10.4

Bump step-security/harden-runner from 2.10.3 to 2.10.4 #750

Workflow file for this run

name: Run system tests
on:
push:
branches:
- master
- develop
pull_request:
concurrency:
group: ${{ github.ref }}
cancel-in-progress: true
permissions:
checks: write
jobs:
build:
runs-on: ubuntu-latest
steps:
- uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
with:
disable-sudo: true
egress-policy: block
allowed-endpoints: >
api.adoptopenjdk.net:443
api.github.com:443
auth.docker.io:443
download-installer.cdn.mozilla.net:443
download.mozilla.org:443
downloads.gradle-dn.com:443
downloads.gradle.org:443
github.com:443
github-cloud.githubusercontent.com:443
jcenter.bintray.com:443
objects.githubusercontent.com:443
ocsp.digicert.com:80
plugins.gradle.org:443
plugins-artifacts.gradle.org:443
production.cloudflare.docker.com:443
r3.o.lencr.org:80
raw.githubusercontent.com:443
registry-1.docker.io:443
repo.maven.apache.org:443
services.gradle.org:443
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
lfs: true
- run: docker compose pull --quiet && docker compose up -d
working-directory: tests/src/test/resources/
- uses: actions/setup-java@7a6d8a8234af8eb26422e24e3006232cccaa061b # v4.6.0
with:
distribution: 'adopt'
java-version: '17'
cache: 'gradle'
- uses: browser-actions/setup-firefox@955a5d42b5f068a8917c6a4ff1656a2235c66dfb # v1.5.2
with:
firefox-version: latest
- uses: gradle/actions/wrapper-validation@0bdd871935719febd78681f197cd39af5b6e16a6 # v4
- run: ./gradlew --no-daemon check
working-directory: tests/
- uses: mikepenz/action-junit-report@62516aa379bff6370c95fd5894d5a27fb6619d9b # v5
if: always() # always run even if the previous step fails
with:
report_paths: 'tests/build/test-results/test/TEST-*.xml'