/
githubmirror
/
amphtml
Обзор
Документация
Войти
/
githubmirror
/
amphtml
Код
Запросы
0
Пакеты
0
Релизы
0
Аналитика
Безопасность
main
.github/workflows/codeql.yml
49 строк
1 KB
renovate[bot]
📦 Update subpackage devDependencies (#40198)
06 янв 2026, 23:32
Не верифицирован
06 янв 2026, 23:32
004f2d2
Код
Авторство
О чём код?
name: 'CodeQL' on: push: branches: ['main'] pull_request: # The branches below must be a subset of the branches above branches: ['main'] schedule: - cron: '0 0 * * 1' permissions: contents: read jobs: analyze: name: Analyze runs-on: ubuntu-latest permissions: actions: read contents: read security-events: write strategy: fail-fast: false matrix: # TODO: add `cpp` for Validator; don't forget to add a build step language: ['go', 'javascript', 'python', 'typescript'] steps: - name: Harden Runner uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0 with: egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs - name: Checkout repository uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4.3.1 # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL uses: github/codeql-action/init@45c373516f557556c15d420e3f5e0aa3d64366bc # v3.31.9 with: config-file: ./.github/codeql/config.yml languages: ${{ matrix.language }} - name: Perform CodeQL Analysis uses: github/codeql-action/analyze@45c373516f557556c15d420e3f5e0aa3d64366bc # v3.31.9 with: category: '/language:${{matrix.language}}'