diff --git a/.drone.yml b/.drone.yml index dcd53b0..e29ea3e 100644 --- a/.drone.yml +++ b/.drone.yml @@ -25,6 +25,12 @@ steps: commands: - mvn test --no-transfer-progress -B -V + # check maven dependencies + - name: dependency-check + image: maven:3-eclipse-temurin-16 + commands: + - mvn dependency-check:check --no-transfer-progress -B -V + # run code analysis - name: code-analysis image: maven:3-eclipse-temurin-16 diff --git a/pom.xml b/pom.xml index 6b28781..1b177dd 100644 --- a/pom.xml +++ b/pom.xml @@ -12,6 +12,9 @@ 16 16 UTF-8 + ./target/dependency-check-report.html + ./target/dependency-check-report.json + true @@ -138,6 +141,18 @@ 3.9.1.2184 + + org.owasp + dependency-check-maven + 8.0.0 + + + html + json + + + +