Skip to content

Commit 4bfb945

Browse files
authored
Exclude dependabot "push" events from codeql Analysis
1 parent d3b9a68 commit 4bfb945

File tree

1 file changed

+3
-2
lines changed

1 file changed

+3
-2
lines changed

.github/workflows/codeql-analysis.yml

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,8 @@ jobs:
1313
analyse:
1414
name: Analyse
1515
runs-on: ubuntu-latest
16-
if: "!contains(github.event.head_commit.message, '[ci skip]') && !contains(github.event.head_commit.message, '[skip ci]')"
16+
# dependeabot has on push events only read-only access, but codeql requires write access
17+
if: ${{ !(github.actor == 'dependabot[bot]' && contains(fromJSON('["push"]'), github.event_name)) }}
1718
steps:
1819
- uses: actions/checkout@v4
1920
with:
@@ -30,4 +31,4 @@ jobs:
3031
- name: Build
3132
run: mvn -B compile
3233
- name: Perform CodeQL Analysis
33-
uses: github/codeql-action/analyze@v3
34+
uses: github/codeql-action/analyze@v3

0 commit comments

Comments
 (0)