|
|
@@ -0,0 +1,38 @@ |
|
|
|
name: "CodeQL" |
|
|
|
|
|
|
|
on: |
|
|
|
push: |
|
|
|
branches: [master, ] |
|
|
|
pull_request: |
|
|
|
# The branches below must be a subset of the branches above |
|
|
|
branches: [master] |
|
|
|
schedule: |
|
|
|
- cron: '0 16 * * 2' |
|
|
|
|
|
|
|
jobs: |
|
|
|
analyse: |
|
|
|
name: Analyse |
|
|
|
runs-on: ubuntu-latest |
|
|
|
|
|
|
|
steps: |
|
|
|
- name: Checkout repository |
|
|
|
uses: actions/checkout@v2 |
|
|
|
with: |
|
|
|
# We must fetch at least the immediate parents so that if this is |
|
|
|
# a pull request then we can checkout the head. |
|
|
|
fetch-depth: 2 |
|
|
|
|
|
|
|
# If this run was triggered by a pull request event, then checkout |
|
|
|
# the head of the pull request instead of the merge commit. |
|
|
|
- run: git checkout HEAD^2 |
|
|
|
if: ${{ github.event_name == 'pull_request' }} |
|
|
|
|
|
|
|
# Initializes the CodeQL tools for scanning. |
|
|
|
- name: Initialize CodeQL |
|
|
|
uses: github/codeql-action/init@v1 |
|
|
|
# Override language selection by uncommenting this and choosing your languages |
|
|
|
with: |
|
|
|
languages: python |
|
|
|
|
|
|
|
- name: Perform CodeQL Analysis |
|
|
|
uses: github/codeql-action/analyze@v1 |