Skip to content

Commit 248ab88

Browse files
Merge pull request NVIDIA#891 from ArangoGutierrez/codeql
[no-relnote] Add CodeQL conde scanning
2 parents cbe2a21 + 1817036 commit 248ab88

File tree

1 file changed

+52
-0
lines changed

1 file changed

+52
-0
lines changed

.github/workflows/code_scanning.yaml

Lines changed: 52 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,52 @@
1+
# Copyright 2024 NVIDIA CORPORATION
2+
#
3+
# Licensed under the Apache License, Version 2.0 (the "License");
4+
# you may not use this file except in compliance with the License.
5+
# You may obtain a copy of the License at
6+
#
7+
# http://www.apache.org/licenses/LICENSE-2.0
8+
#
9+
# Unless required by applicable law or agreed to in writing, software
10+
# distributed under the License is distributed on an "AS IS" BASIS,
11+
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12+
# See the License for the specific language governing permissions and
13+
# limitations under the License.
14+
15+
name: "CodeQL"
16+
17+
on:
18+
pull_request:
19+
types:
20+
- opened
21+
- synchronize
22+
branches:
23+
- main
24+
- release-*
25+
push:
26+
branches:
27+
- main
28+
- release-*
29+
30+
jobs:
31+
analyze:
32+
name: Analyze Go code with CodeQL
33+
runs-on: ubuntu-latest
34+
timeout-minutes: 360
35+
permissions:
36+
security-events: write
37+
packages: read
38+
steps:
39+
- name: Checkout repository
40+
uses: actions/checkout@v4
41+
- name: Initialize CodeQL
42+
uses: github/codeql-action/init@v3
43+
with:
44+
languages: go
45+
build-mode: manual
46+
- shell: bash
47+
run: |
48+
make build
49+
- name: Perform CodeQL Analysis
50+
uses: github/codeql-action/analyze@v3
51+
with:
52+
category: "/language:go"

0 commit comments

Comments
 (0)