@@ -13,12 +13,13 @@ name: "CodeQL"
13
13
14
14
on :
15
15
push :
16
- branches : [ master ]
16
+ branches : [master]
17
17
pull_request :
18
18
# The branches below must be a subset of the branches above
19
- branches : [ master ]
19
+ branches : [master]
20
20
schedule :
21
- - cron : ' 44 16 1-7 * 6'
21
+ # Runs Saturdays at 4:44 pm
22
+ - cron : " 44 16 1-7 * 6"
22
23
23
24
jobs :
24
25
analyze :
@@ -32,40 +33,40 @@ jobs:
32
33
strategy :
33
34
fail-fast : false
34
35
matrix :
35
- language : [ ' javascript' ]
36
+ language : [" javascript" ]
36
37
# CodeQL supports [ 'cpp', 'csharp', 'go', 'java', 'javascript', 'python' ]
37
38
# Learn more:
38
39
# https://docs.github.com/en/free-pro-team@latest/github/finding-security-vulnerabilities-and-errors-in-your-code/configuring-code-scanning#changing-the-languages-that-are-analyzed
39
40
40
41
steps :
41
- - name : Checkout repository
42
- uses : actions/checkout@v2
42
+ - name : Checkout repository
43
+ uses : actions/checkout@v3
43
44
44
- # Initializes the CodeQL tools for scanning.
45
- - name : Initialize CodeQL
46
- uses : github/codeql-action/init@v1
47
- with :
48
- languages : ${{ matrix.language }}
49
- # If you wish to specify custom queries, you can do so here or in a config file.
50
- # By default, queries listed here will override any specified in a config file.
51
- # Prefix the list here with "+" to use these queries and those in the config file.
52
- # queries: ./path/to/local/query, your-org/your-repo/queries@main
45
+ # Initializes the CodeQL tools for scanning.
46
+ - name : Initialize CodeQL
47
+ uses : github/codeql-action/init@v2
48
+ with :
49
+ languages : ${{ matrix.language }}
50
+ # If you wish to specify custom queries, you can do so here or in a config file.
51
+ # By default, queries listed here will override any specified in a config file.
52
+ # Prefix the list here with "+" to use these queries and those in the config file.
53
+ # queries: ./path/to/local/query, your-org/your-repo/queries@main
53
54
54
- # Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
55
- # If this step fails, then you should remove it and run the build manually (see below)
56
- - name : Autobuild
57
- uses : github/codeql-action/autobuild@v1
55
+ # Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
56
+ # If this step fails, then you should remove it and run the build manually (see below)
57
+ - name : Autobuild
58
+ uses : github/codeql-action/autobuild@v2
58
59
59
- # ℹ️ Command-line programs to run using the OS shell.
60
- # 📚 https://git.io/JvXDl
60
+ # ℹ️ Command-line programs to run using the OS shell.
61
+ # 📚 https://git.io/JvXDl
61
62
62
- # ✏️ If the Autobuild fails above, remove it and uncomment the following three lines
63
- # and modify them (or add more) to build your code if your project
64
- # uses a compiled language
63
+ # ✏️ If the Autobuild fails above, remove it and uncomment the following three lines
64
+ # and modify them (or add more) to build your code if your project
65
+ # uses a compiled language
65
66
66
- # - run: |
67
- # make bootstrap
68
- # make release
67
+ # - run: |
68
+ # make bootstrap
69
+ # make release
69
70
70
- - name : Perform CodeQL Analysis
71
- uses : github/codeql-action/analyze@v1
71
+ - name : Perform CodeQL Analysis
72
+ uses : github/codeql-action/analyze@v2
0 commit comments