Skip to content

Add on: pull_request trigger to CodeQL workflow#180

Merged
konradpabjan merged 1 commit into
actions:mainfrom
rneatherway:codeql-add-pull-request-trigger
Jan 15, 2021
Merged

Add on: pull_request trigger to CodeQL workflow#180
konradpabjan merged 1 commit into
actions:mainfrom
rneatherway:codeql-add-pull-request-trigger

Conversation

@rneatherway

Copy link
Copy Markdown
Contributor

From February 2021, in order to provide feedback on pull requests, Code Scanning workflows must be configured with both push and pull_request triggers. This is because Code Scanning compares the results from a pull request against the results for the base branch to tell you only what has changed between the two.

Early in the beta period we supported displaying results on pull requests for workflows with only push triggers, but have discontinued support as this proved to be less robust.

See https://docs.github.com/en/free-pro-team@latest/github/finding-security-vulnerabilities-and-errors-in-your-code/configuring-code-scanning#scanning-pull-requests for more information on how best to configure your Code Scanning workflows.

From February 2021, in order to provide feedback on pull requests, Code Scanning workflows must be configured with both `push` and `pull_request` triggers. This is because Code Scanning compares the results from a pull request against the results for the base branch to tell you only what has changed between the two.

Early in the beta period we supported displaying results on pull requests for workflows with only `push` triggers, but have discontinued support as this proved to be less robust.

See https://docs.github.com/en/free-pro-team@latest/github/finding-security-vulnerabilities-and-errors-in-your-code/configuring-code-scanning#scanning-pull-requests for more information on how best to configure your Code Scanning workflows.
@konradpabjan
konradpabjan merged commit a112144 into actions:main Jan 15, 2021
tdfacer pushed a commit to ifit/setup-python that referenced this pull request Oct 7, 2025
From February 2021, in order to provide feedback on pull requests, Code Scanning workflows must be configured with both `push` and `pull_request` triggers. This is because Code Scanning compares the results from a pull request against the results for the base branch to tell you only what has changed between the two.

Early in the beta period we supported displaying results on pull requests for workflows with only `push` triggers, but have discontinued support as this proved to be less robust.

See https://docs.github.com/en/free-pro-team@latest/github/finding-security-vulnerabilities-and-errors-in-your-code/configuring-code-scanning#scanning-pull-requests for more information on how best to configure your Code Scanning workflows.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants