Commit Graph

128 Commits

Author SHA1 Message Date
dependabot[bot]
7441e87751 Bump aquasecurity/trivy-action from 0.35.0 to 0.36.0 (#3032)
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action) from 0.35.0 to 0.36.0.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases)
- [Commits](https://github.com/aquasecurity/trivy-action/compare/v0.35.0...v0.36.0)

---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
  dependency-version: 0.36.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-24 08:27:08 +03:00
Stanislav Trailov
f2edc36e11 Add verify with Postgre (#3005)
* Add verify with Postgre

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>

* make them only on trigger manually

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>

---------

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>
2026-04-20 10:04:12 +03:00
Avgustin Marinov
000dd97bbc Bump some action versions (#3023)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2026-04-16 09:37:36 +03:00
Avgustin Marinov
643e96b7b1 Add explicit codeql workflow (#3019)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2026-04-15 16:01:23 +03:00
dependabot[bot]
23cd368e00 Bump actions/cache from 5.0.4 to 5.0.5 (#3012)
Bumps [actions/cache](https://github.com/actions/cache) from 5.0.4 to 5.0.5.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v5.0.4...v5.0.5)

---
updated-dependencies:
- dependency-name: actions/cache
  dependency-version: 5.0.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-14 11:01:13 +03:00
dependabot[bot]
0431936cca Bump docker/login-action from 4.0.0 to 4.1.0 (#2994)
Bumps [docker/login-action](https://github.com/docker/login-action) from 4.0.0 to 4.1.0.
- [Release notes](https://github.com/docker/login-action/releases)
- [Commits](https://github.com/docker/login-action/compare/v4.0.0...v4.1.0)

---
updated-dependencies:
- dependency-name: docker/login-action
  dependency-version: 4.1.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-07 08:25:20 +03:00
Stanislav Trailov
951a89823f Fix/vulnerability build (#2998)
* Fix vulnerability build

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>

* add scans dir before scanning

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>

---------

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>
2026-04-06 19:31:34 +03:00
Stanislav Trailov
82a3cfe1f4 Fix vulnerability build (#2997)
Signed-off-by: strailov <Stanislav.Trailov@bosch.io>
2026-04-06 18:48:20 +03:00
Stanislav Trailov
273abebf9b Migrate trivy scan to trivy-action (#2992)
* Migrate trivy scan to trivy-action

* Revert to hard versions approach, but not only with major ref

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>

---------

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>
2026-04-03 10:44:46 +03:00
Stanislav Trailov
6a1120bbd3 Try to fix dash licence tool in release pipeline (#2987)
Signed-off-by: strailov <Stanislav.Trailov@bosch.io>
2026-03-30 14:23:40 +03:00
dependabot[bot]
a752c72c01 Bump docker/login-action from 3 to 4 (#2950)
Bumps [docker/login-action](https://github.com/docker/login-action) from 3 to 4.
- [Release notes](https://github.com/docker/login-action/releases)
- [Commits](https://github.com/docker/login-action/compare/v3...v4)

---
updated-dependencies:
- dependency-name: docker/login-action
  dependency-version: '4'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-09 16:43:35 +02:00
Stanislav Trailov
5ad3c61a94 fix release action (#2951)
* fix release action

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>

* revert trivy to only read

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>

---------

Signed-off-by: strailov <Stanislav.Trailov@bosch.io>
2026-03-06 09:41:59 +02:00
dependabot[bot]
556bad652f Bump actions/cache from 4 to 5 (#2854)
Bumps [actions/cache](https://github.com/actions/cache) from 4 to 5.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](https://github.com/actions/cache/compare/v4...v5)

---
updated-dependencies:
- dependency-name: actions/cache
  dependency-version: '5'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-15 15:17:40 +02:00
Avgustin Marinov
6988f5eafb Fix nop cache using (especially for testing) (#2841)
+ fix flaky tests that requires no caches

Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-12-01 13:53:08 +02:00
dependabot[bot]
32f1eab745 Bump actions/checkout from 5 to 6 (#2830)
Bumps [actions/checkout](https://github.com/actions/checkout) from 5 to 6.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v5...v6)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: '6'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-11-24 08:30:57 +02:00
Avgustin Marinov
4846587aee Update SECURITY.md (#2822)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-11-19 11:38:36 +02:00
Avgustin Marinov
018a18850c Restrict permissions to github token for workflows (#2821)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-11-18 16:23:30 +02:00
Avgustin Marinov
bcf62f39e7 Remove 'Simple' from Simple UI (#2809)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-11-17 09:03:27 +02:00
Avgustin Marinov
598567e08f Remove site/ replaces by docs/ (#2803)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-11-13 15:56:41 +02:00
Avgustin Marinov
7e20900175 Fix polling interval validation error message (#2798)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-11-11 12:16:49 +02:00
dependabot[bot]
222ca5c826 Bump github/codeql-action from 3 to 4 (#2729)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3 to 4.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/v3...v4)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-version: '4'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-09 11:08:06 +03:00
Avgustin Marinov
cc36ca8801 Fix EntityMatcher when for Identifiable.getId (#2724)
* Fix EntityMatcher to process properly filters of type targetType.id - to resolve correctly the getter return type Long not T
* Add AutoAsssignTest access control test
* Simplify rest of the ACM tests

Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-10-07 15:26:04 +03:00
Avgustin Marinov
6907931eb6 Change first-interaction props with underscore (#2723)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-10-06 14:30:42 +03:00
Florian BEZANNIER
a6d94919e9 Add Spotless for Code Formatting (#2613)
* style: format from cli

* ci: add style check
2025-10-06 11:50:22 +03:00
Avgustin Marinov
c2a2545e36 Add issue-message in first interaction workflow (#2721)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-10-06 09:58:27 +03:00
Avgustin Marinov
14b5d1b29d Simplify scan workflow (#2692)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-09-24 11:20:02 +03:00
Avgustin Marinov
b26a12f733 Remove unnecessary dash call (#2691)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-09-24 11:06:06 +03:00
Avgustin Marinov
a37d5304fe Fix dash scan (#2690)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-09-24 10:55:46 +03:00
dependabot[bot]
e37fe75f15 Bump actions/stale from 9 to 10 (#2651)
Bumps [actions/stale](https://github.com/actions/stale) from 9 to 10.
- [Release notes](https://github.com/actions/stale/releases)
- [Changelog](https://github.com/actions/stale/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/stale/compare/v9...v10)

---
updated-dependencies:
- dependency-name: actions/stale
  dependency-version: '10'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-05 11:11:32 +03:00
Avgustin Marinov
2a636328a0 20250828 cleanup (#2639)
* Cleanup

* Refactor artifact management
2025-09-02 16:08:14 +03:00
Avgustin Marinov
42b0bc06a9 Fix Sonar findings (#2630)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-08-26 09:32:43 +03:00
Avgustin Marinov
5874632ca7 Add GitHub actions upgrade via dependabot (#2629)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-08-26 09:05:27 +03:00
Avgustin Marinov
53e30dd180 Upgrade github actions versions (#2622)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-08-25 16:45:59 +03:00
Avgustin Marinov
b5a2d39518 Bump Spring Boot to 3.5.5 (#2621)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-08-25 15:50:15 +03:00
Avgustin Marinov
cd2c68081f Refactor RabbitMQ configuration (#2519)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-30 15:50:30 +03:00
Avgustin Marinov
2a5f47df3f Fix/verfy pr (#2518)
* Stale workflow only on hawkbit project

Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>

* Fix verifying PR - checkout from the repo

---------

Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-30 09:02:31 +03:00
Avgustin Marinov
f99de6aa92 Stale workflow only on hawkbit project (#2517)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-30 08:42:12 +03:00
Avgustin Marinov
a3261c181d Fix release workflow (#2516) 2025-06-27 17:02:18 +03:00
Avgustin Marinov
65a0ebfa4f Fix tag workflow (#2515) 2025-06-27 16:19:21 +03:00
Avgustin Marinov
e1eb6e8041 Fix reusable_workflow_tag (#2514)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 12:54:10 +03:00
Avgustin Marinov
e4cf69c742 Fix reusable_workflow_tag.yaml (#2513)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 12:47:52 +03:00
Avgustin Marinov
035466bd88 Fix reusable_workflow_tag.yaml (#2512)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 12:35:24 +03:00
Avgustin Marinov
d95e60280e Fix release tag (#2511)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 12:16:53 +03:00
Avgustin Marinov
bb70309a60 Fix/relese tag2 (#2510)
* Fix release_tag.yaml

Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>

* Fix relase tag

Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>

---------

Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 12:05:34 +03:00
Avgustin Marinov
4bca6e8a77 Fix release_tag.yaml (#2509)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 11:48:11 +03:00
Avgustin Marinov
0d2c2c1878 Fix license scans (#2508)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 11:41:18 +03:00
Avgustin Marinov
6e2ba70dbe Fix license scan workflow (#2506) (#2507)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 11:35:03 +03:00
Avgustin Marinov
221f23fdf3 Fix license scan workflow (#2506)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 11:12:07 +03:00
Avgustin Marinov
0d49fa7bac Fix workflows (#2505)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 11:02:19 +03:00
Avgustin Marinov
a35201ac1c Refactor workflows - user reusable workflows (#2504)
Signed-off-by: Avgustin Marinov <Avgustin.Marinov@bosch.com>
2025-06-27 10:51:20 +03:00