From cc6e528fe1e3b4cbad9b9c9ace8beed49a0952a6 Mon Sep 17 00:00:00 2001 From: Michael Cramer Date: Thu, 7 Mar 2024 21:43:51 +0100 Subject: [PATCH] add maven dependency submission action to dependency review --- .github/workflows/dependency-review.yml | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index 3f34562..7971566 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -10,7 +10,7 @@ name: 'Dependency Review' on: [pull_request] permissions: - contents: read + contents: write jobs: dependency-review: @@ -25,3 +25,6 @@ jobs: uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # v3.6.0 - name: 'Dependency Review' uses: actions/dependency-review-action@0efb1d1d84fc9633afcdaad14c485cbbc90ef46c # v2.5.1 + - name: Maven Dependency Tree Dependency Submission + uses: advanced-security/maven-dependency-submission-action@v4.0.2 +