github.com/goreleaser/nfpm/v2@v2.44.0/.github/workflows/codeql.yml (about) 1 name: "codeql" 2 3 on: 4 pull_request: 5 push: 6 branches: [main] 7 schedule: 8 - cron: "0 2 * * *" 9 10 permissions: 11 contents: read 12 13 concurrency: 14 group: codeql-${{ github.event.pull_request.number || github.ref }} 15 cancel-in-progress: true 16 17 jobs: 18 analyze: 19 name: analyze 20 runs-on: ubuntu-latest 21 strategy: 22 fail-fast: false 23 matrix: 24 language: ["go", "actions"] 25 permissions: 26 actions: read 27 contents: read 28 pull-requests: read 29 security-events: write 30 steps: 31 - uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0 32 with: 33 persist-credentials: false 34 - uses: github/codeql-action/init@fe4161a26a8629af62121b670040955b330f9af2 # v4.31.6 35 with: 36 languages: ${{ matrix.language }} 37 - uses: github/codeql-action/autobuild@fe4161a26a8629af62121b670040955b330f9af2 # v4.31.6 38 - uses: github/codeql-action/analyze@fe4161a26a8629af62121b670040955b330f9af2 # v4.31.6 39