mirror of
https://github.com/SonarSource/sonarqube-scan-action.git
synced 2026-09-30 08:38:43 +00:00
When HTTPS_PROXY or https_proxy is set, download the public key over HTTPS, validate that exactly one primary key matches the requested fingerprint, and import it from memory. Retry retrieval using the fallback keyserver when the primary attempt fails. Keep native GPG key retrieval when no HTTPS proxy is configured and update the tests and generated distribution files. Signed-off-by: Torbjörn SVENSSON <torbjorn.svensson@foss.st.com>