
Helps ensure they still actually work when changes are made Signed-off-by: seth <getchoo@tuta.io>
79 lines
1.6 KiB
YAML
79 lines
1.6 KiB
YAML
name: "CodeQL Code Scanning"
|
|
|
|
on:
|
|
push:
|
|
paths:
|
|
# File types
|
|
- "**.cpp"
|
|
- "**.h"
|
|
- "**.java"
|
|
|
|
# Directories
|
|
- "buildconfig/"
|
|
- "cmake/"
|
|
- "launcher/"
|
|
- "libraries/"
|
|
- "program_info/"
|
|
- "tests/"
|
|
|
|
# Files
|
|
- "CMakeLists.txt"
|
|
- "COPYING.md"
|
|
|
|
# Workflows
|
|
- ".github/codeql"
|
|
- ".github/workflows/codeql.yml"
|
|
- ".github/actions/setup-dependencies/"
|
|
pull_request:
|
|
paths:
|
|
# File types
|
|
- "**.cpp"
|
|
- "**.h"
|
|
|
|
# Directories
|
|
- "buildconfig/"
|
|
- "cmake/"
|
|
- "launcher/"
|
|
- "libraries/"
|
|
- "program_info/"
|
|
- "tests/"
|
|
|
|
# Files
|
|
- "CMakeLists.txt"
|
|
- "COPYING.md"
|
|
|
|
# Workflows
|
|
- ".github/codeql"
|
|
- ".github/workflows/codeql.yml"
|
|
- ".github/actions/setup-dependencies/"
|
|
workflow_dispatch:
|
|
|
|
jobs:
|
|
CodeQL:
|
|
runs-on: ubuntu-latest
|
|
|
|
steps:
|
|
- name: Checkout repository
|
|
uses: actions/checkout@v4
|
|
with:
|
|
submodules: "true"
|
|
|
|
- name: Initialize CodeQL
|
|
uses: github/codeql-action/init@v3
|
|
with:
|
|
config-file: ./.github/codeql/codeql-config.yml
|
|
queries: security-and-quality
|
|
languages: cpp, java
|
|
|
|
- name: Setup dependencies
|
|
uses: ./.github/actions/setup-dependencies
|
|
with:
|
|
build-type: Debug
|
|
|
|
- name: Configure and Build
|
|
run: |
|
|
cmake --preset linux_debug
|
|
cmake --build --preset linux_debug
|
|
|
|
- name: Perform CodeQL Analysis
|
|
uses: github/codeql-action/analyze@v3
|