codeql.yml 865 B

1234567891011121314151617181920212223242526272829303132333435
  1. name: "CodeQL Advanced"
  2. on:
  3. push:
  4. branches: [ "main" ]
  5. pull_request:
  6. branches: [ "main" ]
  7. permissions:
  8. contents: read
  9. packages: read
  10. actions: read
  11. security-events: read
  12. jobs:
  13. analyze:
  14. name: Analyze project
  15. runs-on: ubuntu-latest
  16. permissions:
  17. # required for all workflows
  18. security-events: write
  19. strategy:
  20. fail-fast: false
  21. steps:
  22. - name: Checkout repository
  23. uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
  24. # Initializes the CodeQL tools for scanning.
  25. - name: Initialize CodeQL
  26. uses: github/codeql-action/init@45775bd8235c68ba998cffa5171334d58593da47 # v3.28.15
  27. with:
  28. languages: go
  29. build-mode: autobuild
  30. - name: Perform CodeQL Analysis
  31. uses: github/codeql-action/analyze@45775bd8235c68ba998cffa5171334d58593da47 # v3.28.15