forked from JOJ/Joint-Teapot
		
	ci: add CodeQL workflow for GitHub code scanning (#20)
Co-authored-by: LGTM Migrator <lgtm-migrator@users.noreply.github.com>
This commit is contained in:
		
							parent
							
								
									1530d8b44d
								
							
						
					
					
						commit
						ac54d14aee
					
				
							
								
								
									
										41
									
								
								.github/workflows/codeql.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							
							
						
						
									
										41
									
								
								.github/workflows/codeql.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							|  | @ -0,0 +1,41 @@ | ||||||
|  | name: "CodeQL" | ||||||
|  | 
 | ||||||
|  | on: | ||||||
|  |   push: | ||||||
|  |     branches: [ "master" ] | ||||||
|  |   pull_request: | ||||||
|  |     branches: [ "master" ] | ||||||
|  |   schedule: | ||||||
|  |     - cron: "26 0 * * 5" | ||||||
|  | 
 | ||||||
|  | jobs: | ||||||
|  |   analyze: | ||||||
|  |     name: Analyze | ||||||
|  |     runs-on: ubuntu-latest | ||||||
|  |     permissions: | ||||||
|  |       actions: read | ||||||
|  |       contents: read | ||||||
|  |       security-events: write | ||||||
|  | 
 | ||||||
|  |     strategy: | ||||||
|  |       fail-fast: false | ||||||
|  |       matrix: | ||||||
|  |         language: [ python ] | ||||||
|  | 
 | ||||||
|  |     steps: | ||||||
|  |       - name: Checkout | ||||||
|  |         uses: actions/checkout@v3 | ||||||
|  | 
 | ||||||
|  |       - name: Initialize CodeQL | ||||||
|  |         uses: github/codeql-action/init@v2 | ||||||
|  |         with: | ||||||
|  |           languages: ${{ matrix.language }} | ||||||
|  |           queries: +security-and-quality | ||||||
|  | 
 | ||||||
|  |       - name: Autobuild | ||||||
|  |         uses: github/codeql-action/autobuild@v2 | ||||||
|  | 
 | ||||||
|  |       - name: Perform CodeQL Analysis | ||||||
|  |         uses: github/codeql-action/analyze@v2 | ||||||
|  |         with: | ||||||
|  |           category: "/language:${{ matrix.language }}" | ||||||
		Loading…
	
		Reference in New Issue
	
	Block a user
	![43144390+lgtm-com[bot]@users.noreply.github.com](/git/assets/img/avatar_default.png) lgtm-com[bot]
						lgtm-com[bot]