comparison .github/workflows/codeql-analysis.yml @ 7729:edd93fa4a5ec

chore: update actions in gihub workflows. [skip travis] - no ci on travis.
author John Rouillard <rouilj@ieee.org>
date Sun, 28 Jan 2024 22:53:02 -0500
parents bdc81c1e2eec
children c305587708a8
comparison
equal deleted inserted replaced
7728:a17d0abfb212 7729:edd93fa4a5ec
47 # Learn more... 47 # Learn more...
48 # https://docs.github.com/en/github/finding-security-vulnerabilities-and-errors-in-your-code/configuring-code-scanning#overriding-automatic-language-detection 48 # https://docs.github.com/en/github/finding-security-vulnerabilities-and-errors-in-your-code/configuring-code-scanning#overriding-automatic-language-detection
49 49
50 steps: 50 steps:
51 - name: Checkout repository 51 - name: Checkout repository
52 uses: actions/checkout@8ade135a41bc03ea155e62e844d188df1ea18608 # v4.1.0 52 uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
53 53
54 # Initializes the CodeQL tools for scanning. 54 # Initializes the CodeQL tools for scanning.
55 - name: Initialize CodeQL 55 - name: Initialize CodeQL
56 uses: github/codeql-action/init@cdcdbb579706841c47f7063dda365e292e5cad7a # v2.13.4 56 uses: github/codeql-action/upload-sarif@65c74964a9ed8c44ed9f19d4bbc5757a6a8e9ab9 # v2.16.1
57 with: 57 with:
58 languages: ${{ matrix.language }} 58 languages: ${{ matrix.language }}
59 # If you wish to specify custom queries, you can do so here or in a config file. 59 # If you wish to specify custom queries, you can do so here or in a config file.
60 # By default, queries listed here will override any specified in a config file. 60 # By default, queries listed here will override any specified in a config file.
61 # Prefix the list here with "+" to use these queries and those in the config file. 61 # Prefix the list here with "+" to use these queries and those in the config file.
62 # queries: ./path/to/local/query, your-org/your-repo/queries@main 62 # queries: ./path/to/local/query, your-org/your-repo/queries@main
63 63
64 # Autobuild attempts to build any compiled languages (C/C++, C#, or Java). 64 # Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
65 # If this step fails, then you should remove it and run the build manually (see below) 65 # If this step fails, then you should remove it and run the build manually (see below)
66 - name: Autobuild 66 - name: Autobuild
67 uses: github/codeql-action/autobuild@cdcdbb579706841c47f7063dda365e292e5cad7a # v2.13.4 67 uses: github/codeql-action/autobuild@65c74964a9ed8c44ed9f19d4bbc5757a6a8e9ab9 # v2.16.1
68 68
69 # â„šī¸ Command-line programs to run using the OS shell. 69 # â„šī¸ Command-line programs to run using the OS shell.
70 # 📚 https://git.io/JvXDl 70 # 📚 https://git.io/JvXDl
71 71
72 # âœī¸ If the Autobuild fails above, remove it and uncomment the following three lines 72 # âœī¸ If the Autobuild fails above, remove it and uncomment the following three lines
76 #- run: | 76 #- run: |
77 # make bootstrap 77 # make bootstrap
78 # make release 78 # make release
79 79
80 - name: Perform CodeQL Analysis 80 - name: Perform CodeQL Analysis
81 uses: github/codeql-action/analyze@cdcdbb579706841c47f7063dda365e292e5cad7a # v2.13.4 81 uses: github/codeql-action/analyze@65c74964a9ed8c44ed9f19d4bbc5757a6a8e9ab9 # v2.16.1

Roundup Issue Tracker: http://roundup-tracker.org/