comparison .github/workflows/codeql-analysis.yml @ 7225:a81f3750a14a

Commit https://github.com/roundup-tracker/roundup/pull/8 Bump github/codeql-action from 2.2.5 to 2.2.6 also include sarif upload changes.
author John Rouillard <rouilj@ieee.org>
date Sun, 12 Mar 2023 23:48:15 -0400
parents 8dc5b3739367
children 0fd41edd26b0
comparison
equal deleted inserted replaced
7224:01c1f357363f 7225:a81f3750a14a
51 - name: Checkout repository 51 - name: Checkout repository
52 uses: actions/checkout@dc323e67f16fb5f7663d20ff7941f27f5809e9b6 # v2.6.0 52 uses: actions/checkout@dc323e67f16fb5f7663d20ff7941f27f5809e9b6 # v2.6.0
53 53
54 # Initializes the CodeQL tools for scanning. 54 # Initializes the CodeQL tools for scanning.
55 - name: Initialize CodeQL 55 - name: Initialize CodeQL
56 uses: github/codeql-action/init@32dc499307d133bb5085bae78498c0ac2cf762d5 # v2.2.5 56 uses: github/codeql-action/init@16964e90ba004cdf0cd845b866b5df21038b7723 # v2.2.6
57 with: 57 with:
58 languages: ${{ matrix.language }} 58 languages: ${{ matrix.language }}
59 # If you wish to specify custom queries, you can do so here or in a config file. 59 # If you wish to specify custom queries, you can do so here or in a config file.
60 # By default, queries listed here will override any specified in a config file. 60 # By default, queries listed here will override any specified in a config file.
61 # Prefix the list here with "+" to use these queries and those in the config file. 61 # Prefix the list here with "+" to use these queries and those in the config file.
62 # queries: ./path/to/local/query, your-org/your-repo/queries@main 62 # queries: ./path/to/local/query, your-org/your-repo/queries@main
63 63
64 # Autobuild attempts to build any compiled languages (C/C++, C#, or Java). 64 # Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
65 # If this step fails, then you should remove it and run the build manually (see below) 65 # If this step fails, then you should remove it and run the build manually (see below)
66 - name: Autobuild 66 - name: Autobuild
67 uses: github/codeql-action/autobuild@32dc499307d133bb5085bae78498c0ac2cf762d5 # v2.2.5 67 uses: github/codeql-action/autobuild@16964e90ba004cdf0cd845b866b5df21038b7723 # v2.2.6
68 68
69 # â„šī¸ Command-line programs to run using the OS shell. 69 # â„šī¸ Command-line programs to run using the OS shell.
70 # 📚 https://git.io/JvXDl 70 # 📚 https://git.io/JvXDl
71 71
72 # âœī¸ If the Autobuild fails above, remove it and uncomment the following three lines 72 # âœī¸ If the Autobuild fails above, remove it and uncomment the following three lines
76 #- run: | 76 #- run: |
77 # make bootstrap 77 # make bootstrap
78 # make release 78 # make release
79 79
80 - name: Perform CodeQL Analysis 80 - name: Perform CodeQL Analysis
81 uses: github/codeql-action/analyze@32dc499307d133bb5085bae78498c0ac2cf762d5 # v2.2.5 81 uses: github/codeql-action/analyze@16964e90ba004cdf0cd845b866b5df21038b7723 # v2.2.6

Roundup Issue Tracker: http://roundup-tracker.org/