-
Notifications
You must be signed in to change notification settings - Fork 0
74 lines (73 loc) · 1.84 KB
/
codeql.yml
File metadata and controls
74 lines (73 loc) · 1.84 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
# CodeQL Analysis Workflow
#
# NOTE: This workflow requires GitHub Advanced Security to be enabled.
# To enable CodeQL scanning:
# 1. Go to your repository on GitHub
# 2. Click Settings > Code security and analysis
# 3. Enable "Code scanning"
# 4. Click "Set up" for CodeQL analysis
# 5. Uncomment the workflow below
#
# For more information: https://docs.github.com/en/code-security/code-scanning
# Uncomment below when CodeQL is enabled:
#
# name: CodeQL
#
# on:
# push:
# branches: [ master, main ]
# pull_request:
# branches: [ master, main ]
# schedule:
# - cron: '42 18 * * 1'
#
# jobs:
# analyze:
# name: Analyze
# runs-on: ubuntu-latest
# permissions:
# actions: read
# contents: read
# security-events: write
#
# strategy:
# fail-fast: false
# matrix:
# language: [ 'java' ]
#
# steps:
# - name: Checkout repository
# uses: actions/checkout@v4
#
# - name: Initialize CodeQL
# uses: github/codeql-action/init@v3
# with:
# languages: ${{ matrix.language }}
# queries: security-and-quality
#
# - name: Set up JDK 21
# uses: actions/setup-java@v4
# with:
# java-version: 21
# distribution: 'temurin'
#
# - name: Cache Gradle packages
# uses: actions/cache@v4
# with:
# path: |
# ~/.gradle/caches
# ~/.gradle/wrapper
# key: ${{ runner.os }}-gradle-${{ hashFiles('**/*.gradle*', '**/gradle-wrapper.properties') }}
# restore-keys: |
# ${{ runner.os }}-gradle-
#
# - name: Make gradlew executable
# run: chmod +x gradlew
#
# - name: Build project
# run: ./gradlew build -x test
#
# - name: Perform CodeQL Analysis
# uses: github/codeql-action/analyze@v3
# with:
# category: "/language:${{matrix.language}}"