Browse Source

chore: update codeql action to also run for actions (#5360)

Signed-off-by: Gergely Brautigam <182850+Skarlso@users.noreply.github.com>
Gergely Brautigam 6 months ago
parent
commit
0eaf966be6
1 changed files with 9 additions and 4 deletions
  1. 9 4
      .github/workflows/codeql.yml

+ 9 - 4
.github/workflows/codeql.yml

@@ -14,12 +14,17 @@ jobs:
     name: Analyze project
     runs-on: ubuntu-latest
     permissions:
-      # required for all workflows
       security-events: write
       packages: read
-      actions: read 
+      actions: read
     strategy:
       fail-fast: false
+      matrix:
+        include:
+          - language: go
+            build-mode: autobuild
+          - language: actions
+            build-mode: none
     steps:
     - uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
       with:
@@ -31,7 +36,7 @@ jobs:
     - name: Initialize CodeQL
       uses: github/codeql-action/init@192325c86100d080feab897ff886c34abd4c83a3 # v3.29.5
       with:
-        languages: go
-        build-mode: autobuild
+        languages: ${{ matrix.language }}
+        build-mode: ${{ matrix.build-mode }}
     - name: Perform CodeQL Analysis
       uses: github/codeql-action/analyze@192325c86100d080feab897ff886c34abd4c83a3 # v3.29.5