|
|
@@ -14,12 +14,17 @@ jobs:
|
|
|
name: Analyze project
|
|
|
runs-on: ubuntu-latest
|
|
|
permissions:
|
|
|
- # required for all workflows
|
|
|
security-events: write
|
|
|
packages: read
|
|
|
- actions: read
|
|
|
+ actions: read
|
|
|
strategy:
|
|
|
fail-fast: false
|
|
|
+ matrix:
|
|
|
+ include:
|
|
|
+ - language: go
|
|
|
+ build-mode: autobuild
|
|
|
+ - language: actions
|
|
|
+ build-mode: none
|
|
|
steps:
|
|
|
- uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
|
|
|
with:
|
|
|
@@ -31,7 +36,7 @@ jobs:
|
|
|
- name: Initialize CodeQL
|
|
|
uses: github/codeql-action/init@192325c86100d080feab897ff886c34abd4c83a3 # v3.29.5
|
|
|
with:
|
|
|
- languages: go
|
|
|
- build-mode: autobuild
|
|
|
+ languages: ${{ matrix.language }}
|
|
|
+ build-mode: ${{ matrix.build-mode }}
|
|
|
- name: Perform CodeQL Analysis
|
|
|
uses: github/codeql-action/analyze@192325c86100d080feab897ff886c34abd4c83a3 # v3.29.5
|