codeql-analysis.yml 1006 B

12345678910111213141516171819202122232425262728293031323334353637
  1. name: "CodeQL"
  2. on:
  3. push:
  4. branches: [ master ]
  5. pull_request:
  6. branches: [ master ]
  7. schedule:
  8. - cron: '24 2 * * 4'
  9. jobs:
  10. analyze:
  11. name: Analyze
  12. runs-on: ubuntu-latest
  13. strategy:
  14. fail-fast: false
  15. matrix:
  16. language: [ 'csharp' ]
  17. steps:
  18. - name: Checkout repository
  19. uses: actions/checkout@93ea575cb5d8a053eaa0ac8fa3b40d7e05a33cc8 # tag=v3
  20. - name: Setup .NET Core
  21. uses: actions/setup-dotnet@4d4a70f4a5b2a5a5329f13be4ac933f2c9206ac0 # tag=v3
  22. with:
  23. dotnet-version: '6.0.x'
  24. - name: Initialize CodeQL
  25. uses: github/codeql-action/init@cc7986c02bac29104a72998e67239bb5ee2ee110 # tag=v2
  26. with:
  27. languages: ${{ matrix.language }}
  28. queries: +security-extended
  29. - name: Autobuild
  30. uses: github/codeql-action/autobuild@cc7986c02bac29104a72998e67239bb5ee2ee110 # tag=v2
  31. - name: Perform CodeQL Analysis
  32. uses: github/codeql-action/analyze@cc7986c02bac29104a72998e67239bb5ee2ee110 # tag=v2