ci-codeql-analysis.yml 1004 B

12345678910111213141516171819202122232425262728293031323334353637
  1. name: "CodeQL"
  2. on:
  3. push:
  4. branches: [ master ]
  5. pull_request:
  6. branches: [ master ]
  7. schedule:
  8. - cron: '24 2 * * 4'
  9. jobs:
  10. analyze:
  11. name: Analyze
  12. runs-on: ubuntu-latest
  13. strategy:
  14. fail-fast: false
  15. matrix:
  16. language: [ 'csharp' ]
  17. steps:
  18. - name: Checkout repository
  19. uses: actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6
  20. - name: Setup .NET
  21. uses: actions/setup-dotnet@4d6c8fcf3c8f7a60068d26b594648e99df24cee3 # v4.0.0
  22. with:
  23. dotnet-version: '8.0.x'
  24. - name: Initialize CodeQL
  25. uses: github/codeql-action/init@9fdb3e49720b44c48891d036bb502feb25684276 # v3.25.6
  26. with:
  27. languages: ${{ matrix.language }}
  28. queries: +security-extended
  29. - name: Autobuild
  30. uses: github/codeql-action/autobuild@9fdb3e49720b44c48891d036bb502feb25684276 # v3.25.6
  31. - name: Perform CodeQL Analysis
  32. uses: github/codeql-action/analyze@9fdb3e49720b44c48891d036bb502feb25684276 # v3.25.6