File tree Expand file tree Collapse file tree 2 files changed +61
-0
lines changed Expand file tree Collapse file tree 2 files changed +61
-0
lines changed Original file line number Diff line number Diff line change 1+ ame : " CodeQL config"
2+
3+ queries :
4+ - uses : security-and-quality
5+
6+ paths :
7+ - ' unblob'
8+ - ' tests'
9+
10+ paths-ignore :
11+ - ' tests/integration/**/*'
Original file line number Diff line number Diff line change 1+ name : " CodeQL Scan"
2+
3+ on :
4+ push :
5+ branches : [ main ]
6+ pull_request :
7+ # The branches below must be a subset of the branches above
8+ branches : [ main ]
9+ schedule :
10+ - cron : ' 20 8 * * 1'
11+
12+ jobs :
13+ analyze :
14+ name : Analyze
15+ runs-on : ubuntu-latest
16+ permissions :
17+ actions : read
18+ contents : read
19+ security-events : write
20+
21+ strategy :
22+ fail-fast : false
23+ matrix :
24+ language : [ 'python' ]
25+
26+ steps :
27+ - name : Checkout repository
28+ uses : actions/checkout@v2
29+
30+ # Initializes the CodeQL tools for scanning.
31+ - name : Initialize CodeQL
32+ uses : github/codeql-action/init@v2
33+ with :
34+ config-file : ./.github/codeql/codeql-config.yml
35+ languages : ${{ matrix.language }}
36+ # Override the default behavior so that the action doesn't attempt
37+ # to auto-install Python dependencies
38+ setup-python-dependencies : false
39+ # If you wish to specify custom queries, you can do so here or in a config file.
40+ # By default, queries listed here will override any specified in a config file.
41+ # Prefix the list here with "+" to use these queries and those in the config file.
42+ # queries: ./path/to/local/query, your-org/your-repo/queries@main
43+
44+ # Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
45+ # If this step fails, then you should remove it and run the build manually (see below)
46+ - name : Autobuild
47+ uses : github/codeql-action/autobuild@v2
48+
49+ - name : Perform CodeQL Analysis
50+ uses : github/codeql-action/analyze@v2
You can’t perform that action at this time.
0 commit comments