Skip to content

Commit 8633a33

Browse files
committed
fix: align CodeQL with repo languages (robot-cleaner)
1 parent 2ffcbe7 commit 8633a33

File tree

1 file changed

+19
-14
lines changed

1 file changed

+19
-14
lines changed

.github/workflows/codeql.yml

Lines changed: 19 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,6 @@
1+
# SPDX-License-Identifier: AGPL-3.0-or-later
12
name: CodeQL Security Analysis
3+
24
on:
35
push:
46
branches: [main, master]
@@ -7,29 +9,32 @@ on:
79
schedule:
810
- cron: '0 6 * * 1'
911

12+
permissions: read-all
13+
1014
jobs:
1115
analyze:
1216
runs-on: ubuntu-latest
1317
permissions:
18+
contents: read
1419
security-events: write
1520
strategy:
1621
fail-fast: false
1722
matrix:
18-
language: ['javascript', 'python', 'go', 'java', 'ruby']
23+
include:
24+
- language: ruby
25+
build-mode: none
26+
1927
steps:
20-
- uses: actions/checkout@v4
21-
28+
- name: Checkout
29+
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
30+
2231
- name: Initialize CodeQL
23-
uses: github/codeql-action/init@v3
32+
uses: github/codeql-action/init@662472033e021d55d94146f66f6058822b0b39fd # v3.28.1
2433
with:
2534
languages: ${{ matrix.language }}
26-
queries: +security-and-quality
27-
continue-on-error: true
28-
29-
- name: Autobuild
30-
uses: github/codeql-action/autobuild@v3
31-
continue-on-error: true
32-
33-
- name: Perform Analysis
34-
uses: github/codeql-action/analyze@v3
35-
continue-on-error: true
35+
build-mode: ${{ matrix.build-mode }}
36+
37+
- name: Perform CodeQL Analysis
38+
uses: github/codeql-action/analyze@662472033e021d55d94146f66f6058822b0b39fd # v3.28.1
39+
with:
40+
category: "/language:${{ matrix.language }}"

0 commit comments

Comments
 (0)