summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorDavid Oberhollenzer <david.oberhollenzer@sigma-star.at>2020-08-04 19:26:08 +0200
committerDavid Oberhollenzer <david.oberhollenzer@sigma-star.at>2020-08-04 19:27:42 +0200
commitc96d8571e847b8cd79ef8e7ec1b6e13a1938574b (patch)
tree330f393f525ac687c764d1ed5a87c77614eeee61
parentb1df58225cc5d4b12aa756e708f416fd09bc76f9 (diff)
Add configuration for GitHub CodeQL static analysis tools
Signed-off-by: David Oberhollenzer <david.oberhollenzer@sigma-star.at>
-rw-r--r--.github/workflows/codeql-analysis.yml28
1 files changed, 28 insertions, 0 deletions
diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml
new file mode 100644
index 0000000..bf1ac6a
--- /dev/null
+++ b/.github/workflows/codeql-analysis.yml
@@ -0,0 +1,28 @@
+name: "CodeQL"
+
+on:
+ push:
+ branches: [master, ]
+ pull_request:
+ branches: [master]
+ schedule:
+ - cron: '0 17 * * 5'
+
+jobs:
+ analyse:
+ name: Analyse
+ runs-on: ubuntu-latest
+
+ steps:
+ - name: Checkout repository
+ uses: actions/checkout@v2
+ with:
+ fetch-depth: 2
+ - run: git checkout HEAD^2
+ if: ${{ github.event_name == 'pull_request' }}
+ - name: Initialize CodeQL
+ uses: github/codeql-action/init@v1
+ - name: Autobuild
+ uses: github/codeql-action/autobuild@v1
+ - name: Perform CodeQL Analysis
+ uses: github/codeql-action/analyze@v1