From 847982b65a0061e73761e8d323412a47e1444ce6 Mon Sep 17 00:00:00 2001 From: "Trez.One" Date: Mon, 2 Dec 2024 18:14:56 -0500 Subject: [PATCH] Quotes around secrets in merge step. --- .gitea/workflows/build.yaml | 2 +- sonar-project.properties | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/.gitea/workflows/build.yaml b/.gitea/workflows/build.yaml index 3cf673de..fb53066f 100644 --- a/.gitea/workflows/build.yaml +++ b/.gitea/workflows/build.yaml @@ -104,7 +104,7 @@ jobs: - name: Merge PR with Tea CLI run: | - tea pr m --token ${{ secrets.BOT_GITEA_TOKEN }} ${{ gitea.event.pull_request.number }} + tea pr m --token "${{ secrets.BOT_GITEA_TOKEN }}" "${{ gitea.event.pull_request.number }}" # - name: Merge Pull Request # uses: prasiman/gocurl@v1 diff --git a/sonar-project.properties b/sonar-project.properties index fe13978b..c672cb47 100644 --- a/sonar-project.properties +++ b/sonar-project.properties @@ -8,11 +8,11 @@ sonar.inclusions=docker-compose.yml # Disable all other sensors explicitly sonar.iac.enabled=true +sonar.iac.inclusions=**/*.yml,**/*.yaml,**/docker-compose.yml sonar.iac.exclusions=**/*.* # Exclude everything not explicitly included sonar.exclusions=**/*.* # Explicitly include IaC file types (if required for broader IaC scanning) -sonar.iac.inclusions=**/*.yml,**/*.yaml,**/docker-compose.yml # Optional: Wait for quality gate in pipelines sonar.qualitygate.wait=true \ No newline at end of file