github.com/goreleaser/nfpm/v2@v2.44.0/.github/workflows/codeql.yml (about)

     1  name: "codeql"
     2  
     3  on:
     4    pull_request:
     5    push:
     6      branches: [main]
     7    schedule:
     8      - cron: "0 2 * * *"
     9  
    10  permissions:
    11    contents: read
    12  
    13  concurrency:
    14    group: codeql-${{ github.event.pull_request.number || github.ref }}
    15    cancel-in-progress: true
    16  
    17  jobs:
    18    analyze:
    19      name: analyze
    20      runs-on: ubuntu-latest
    21      strategy:
    22        fail-fast: false
    23        matrix:
    24          language: ["go", "actions"]
    25      permissions:
    26        actions: read
    27        contents: read
    28        pull-requests: read
    29        security-events: write
    30      steps:
    31        - uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
    32          with:
    33            persist-credentials: false
    34        - uses: github/codeql-action/init@fe4161a26a8629af62121b670040955b330f9af2 # v4.31.6
    35          with:
    36            languages: ${{ matrix.language }}
    37        - uses: github/codeql-action/autobuild@fe4161a26a8629af62121b670040955b330f9af2 # v4.31.6
    38        - uses: github/codeql-action/analyze@fe4161a26a8629af62121b670040955b330f9af2 # v4.31.6
    39