10
10
# supported CodeQL languages.
11
11
# ******** NOTE ********
12
12
13
- name : " CodeQL"
13
+ name : ' CodeQL'
14
14
15
15
on :
16
16
push :
17
- branches : [ master ]
17
+ branches : [master]
18
18
pull_request :
19
19
# The branches below must be a subset of the branches above
20
- branches : [ master ]
20
+ branches : [master]
21
21
schedule :
22
22
- cron : ' 45 14 * * 4'
23
23
@@ -29,40 +29,40 @@ jobs:
29
29
strategy :
30
30
fail-fast : false
31
31
matrix :
32
- language : [ 'javascript' ]
32
+ language : ['javascript']
33
33
# CodeQL supports [ 'cpp', 'csharp', 'go', 'java', 'javascript', 'python' ]
34
34
# Learn more...
35
35
# https://docs.github.com/en/github/finding-security-vulnerabilities-and-errors-in-your-code/configuring-code-scanning#overriding-automatic-language-detection
36
36
37
37
steps :
38
- - name : Checkout repository
39
- uses : actions/checkout@v2
38
+ - name : Checkout repository
39
+ uses : actions/checkout@v4
40
40
41
- # Initializes the CodeQL tools for scanning.
42
- - name : Initialize CodeQL
43
- uses : github/codeql-action/init@v1
44
- with :
45
- languages : ${{ matrix.language }}
46
- # If you wish to specify custom queries, you can do so here or in a config file.
47
- # By default, queries listed here will override any specified in a config file.
48
- # Prefix the list here with "+" to use these queries and those in the config file.
49
- # queries: ./path/to/local/query, your-org/your-repo/queries@main
41
+ # Initializes the CodeQL tools for scanning.
42
+ - name : Initialize CodeQL
43
+ uses : github/codeql-action/init@v2
44
+ with :
45
+ languages : ${{ matrix.language }}
46
+ # If you wish to specify custom queries, you can do so here or in a config file.
47
+ # By default, queries listed here will override any specified in a config file.
48
+ # Prefix the list here with "+" to use these queries and those in the config file.
49
+ # queries: ./path/to/local/query, your-org/your-repo/queries@main
50
50
51
- # Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
52
- # If this step fails, then you should remove it and run the build manually (see below)
53
- - name : Autobuild
54
- uses : github/codeql-action/autobuild@v1
51
+ # Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
52
+ # If this step fails, then you should remove it and run the build manually (see below)
53
+ - name : Autobuild
54
+ uses : github/codeql-action/autobuild@v2
55
55
56
- # ℹ️ Command-line programs to run using the OS shell.
57
- # 📚 https://git.io/JvXDl
56
+ # ℹ️ Command-line programs to run using the OS shell.
57
+ # 📚 https://git.io/JvXDl
58
58
59
- # ✏️ If the Autobuild fails above, remove it and uncomment the following three lines
60
- # and modify them (or add more) to build your code if your project
61
- # uses a compiled language
59
+ # ✏️ If the Autobuild fails above, remove it and uncomment the following three lines
60
+ # and modify them (or add more) to build your code if your project
61
+ # uses a compiled language
62
62
63
- # - run: |
64
- # make bootstrap
65
- # make release
63
+ # - run: |
64
+ # make bootstrap
65
+ # make release
66
66
67
- - name : Perform CodeQL Analysis
68
- uses : github/codeql-action/analyze@v1
67
+ - name : Perform CodeQL Analysis
68
+ uses : github/codeql-action/analyze@v2
0 commit comments