mirror of
				https://gitea.com/Lydanne/buildx.git
				synced 2025-11-01 00:23:56 +08:00 
			
		
		
		
	Merge pull request #2099 from crazy-max/ci-codeql
ci: enable SAST scanning with CodeQL
This commit is contained in:
		
							
								
								
									
										42
									
								
								.github/workflows/codeql.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							
							
						
						
									
										42
									
								
								.github/workflows/codeql.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							| @@ -0,0 +1,42 @@ | ||||
| name: codeql | ||||
|  | ||||
| on: | ||||
|   push: | ||||
|     branches: | ||||
|       - 'master' | ||||
|       - 'v[0-9]*' | ||||
|   pull_request: | ||||
|  | ||||
| permissions: | ||||
|   actions: read | ||||
|   contents: read | ||||
|   security-events: write | ||||
|  | ||||
| env: | ||||
|   GO_VERSION: 1.21.3 | ||||
|  | ||||
| jobs: | ||||
|   codeql: | ||||
|     runs-on: ubuntu-latest | ||||
|     steps: | ||||
|       - | ||||
|         name: Checkout | ||||
|         uses: actions/checkout@v4 | ||||
|       - | ||||
|         name: Set up Go | ||||
|         uses: actions/setup-go@v4 | ||||
|         with: | ||||
|           go-version: ${{ env.GO_VERSION }} | ||||
|       - | ||||
|         name: Initialize CodeQL | ||||
|         uses: github/codeql-action/init@v2 | ||||
|         with: | ||||
|           languages: go | ||||
|       - | ||||
|         name: Autobuild | ||||
|         uses: github/codeql-action/autobuild@v2 | ||||
|       - | ||||
|         name: Perform CodeQL Analysis | ||||
|         uses: github/codeql-action/analyze@v2 | ||||
|         with: | ||||
|           category: "/language:go" | ||||
		Reference in New Issue
	
	Block a user
	 CrazyMax
					CrazyMax