summaryrefslogtreecommitdiffstats
path: root/.github/workflows/codeql.yml
diff options
context:
space:
mode:
Diffstat (limited to '.github/workflows/codeql.yml')
-rw-r--r--.github/workflows/codeql.yml13
1 files changed, 11 insertions, 2 deletions
diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml
index 008b770..225e2ef 100644
--- a/.github/workflows/codeql.yml
+++ b/.github/workflows/codeql.yml
@@ -6,11 +6,12 @@ on:
- main
- "!dependabot/**"
pull_request:
- # The branches below must be a subset of the branches above
branches:
- main
+ - "!dependabot/**"
schedule:
- cron: "0 0 * * 0"
+ workflow_dispatch:
jobs:
analyze:
@@ -22,13 +23,21 @@ jobs:
security-events: write
steps:
- - name: Checkout repository
+ - name: Clone repository
uses: actions/checkout@v3
+ with:
+ persist-credentials: false
- name: Initialize CodeQL
uses: github/codeql-action/init@v2
with:
languages: "javascript"
+ queries: +security-and-quality
+
+ - name: Autobuild
+ uses: github/codeql-action/autobuild@v2
- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v2
+ with:
+ category: "/language:javascript"