UNCLASSIFIED - NO CUI

PartyBus CI dependency check

Research and remediate PB CI pipeline dependency check findings in Sonarqube.
Open PB ticket for "review and disposition".

Run linting locally

docker run -it --rm -v $(pwd):/app registry1.dso.mil/ironbank/opensource/gradle/gradle-jdk11:7.4.2 bash
cd /app
gradle lintGradle

locally build only

docker run -it --rm -v $(pwd):/app registry1.dso.mil/ironbank/opensource/gradle/gradle-jdk11:7.4.2 bash
cd /app
gradle clean --build-cache assemble

locally run tests only

docker run -it --rm -v $(pwd):/app registry1.dso.mil/ironbank/opensource/gradle/gradle-jdk11:7.4.2 bash
cd /app
gradle test

Research java dependency findings like this

docker run -it --rm -v $(pwd):/app registry1.dso.mil/ironbank/opensource/gradle/gradle-jdk11:7.4.2 bash
cd /app
gradle -q dependencyInsight --dependency log4j
Edited by kevin.wilder