Hi,

We can see all SonarCloud checks fails for PRs which come from a forked
Repo after we use Github's secret token to replace writing the plain token
into source codes.

According to discussion [1] (private) and policy [2], we may have no
solution to get around it.

So,  we may have to disable the sonarcloud and coveralls check for forked
repo (but it is not a good idea as we lose the static code quality check..)

Any ideas?

[1]
https://lists.apache.org/thread.html/r5d2eb2905bd78b3a5a0315d85510585933a568b1384310b47219e551%40%3Cprivate.iotdb.apache.org%3E

[2]
https://docs.github.com/en/actions/reference/events-that-trigger-workflows#pull-request-events-for-forked-repositories

Best,
-----------------------------------
Xiangdong Huang
School of Software, Tsinghua University

 黄向东
清华大学 软件学院

Reply via email to