File tree Expand file tree Collapse file tree 3 files changed +65
-0
lines changed Expand file tree Collapse file tree 3 files changed +65
-0
lines changed Original file line number Diff line number Diff line change 1+ name : " CodeQL Configuration"
2+
3+ packs :
4+ - advanced-security/codeql-python
5+
6+ paths-ignore :
7+ - vendor/**
Original file line number Diff line number Diff line change 1+ name : " CodeQL"
2+
3+ on :
4+ push :
5+ branches : [ "main" ]
6+ pull_request :
7+ branches : [ "main" ]
8+ schedule :
9+ - cron : ' 30 18 * * 2'
10+
11+ jobs :
12+ analyze :
13+ name : Analyze
14+ runs-on : ubuntu-latest
15+ permissions :
16+ actions : read
17+ contents : read
18+ security-events : write
19+
20+ strategy :
21+ fail-fast : false
22+ matrix :
23+ language : [ 'python' ]
24+
25+ steps :
26+ - name : Checkout repository
27+ uses : actions/checkout@v3
28+
29+ - name : Initialize CodeQL
30+ uses : github/codeql-action/init@v2
31+ with :
32+ languages : ${{ matrix.language }}
33+ config-file : ./.github/codeql-config.yml
34+
35+ - name : Autobuild
36+ uses : github/codeql-action/autobuild@v2
37+
38+ - name : Perform CodeQL Analysis
39+ uses : github/codeql-action/analyze@v2
40+ with :
41+ category : " /language:${{ matrix.language }}"
Original file line number Diff line number Diff line change 1+ name : ' Dependency Review'
2+ on : [pull_request]
3+
4+ permissions :
5+ contents : read
6+ pull-requests : write
7+
8+ jobs :
9+ dependency-review :
10+ runs-on : ubuntu-latest
11+ steps :
12+ - name : ' Checkout Repository'
13+ uses : actions/checkout@v3
14+ - name : ' Dependency Review'
15+ uses : actions/dependency-review-action@v2
16+ with :
17+ comment-summary-in-pr : true
You can’t perform that action at this time.
0 commit comments