From 1d172026eb7435041ad4e1ccf076fc0487e3e4a2 Mon Sep 17 00:00:00 2001 From: Stephan Schnabel Date: Tue, 25 Jan 2022 10:11:58 +0100 Subject: [PATCH] Add codeql. --- .github/workflows/codeql.yaml | 26 ++++++++++++++++++++++++++ .github/workflows/release.yaml | 1 + .github/workflows/snapshot.yaml | 4 ++-- 3 files changed, 29 insertions(+), 2 deletions(-) create mode 100644 .github/workflows/codeql.yaml diff --git a/.github/workflows/codeql.yaml b/.github/workflows/codeql.yaml new file mode 100644 index 0000000..bb32f04 --- /dev/null +++ b/.github/workflows/codeql.yaml @@ -0,0 +1,26 @@ +name: CodeQL + +"on": + workflow_dispatch: {} + push: + branches: [main] + pull_request: + branches: [main] + paths: [src/main/java/*.java] + schedule: + - cron: '0 0 * * 0' + +jobs: + codeql: + runs-on: ubuntu-latest + permissions: + security-events: write + actions: read + contents: read + steps: + - uses: actions/checkout@v2 + - uses: github/codeql-action/init@v1 + with: + languages: java + - uses: github/codeql-action/autobuild@v1 + - uses: github/codeql-action/analyze@v1 diff --git a/.github/workflows/release.yaml b/.github/workflows/release.yaml index 8f52669..b992bab 100644 --- a/.github/workflows/release.yaml +++ b/.github/workflows/release.yaml @@ -20,6 +20,7 @@ jobs: with: distribution: temurin java-version: 11 + cache: maven server-id: sonatype-nexus server-username: SERVER_USERNAME server-password: SERVER_PASSWORD diff --git a/.github/workflows/snapshot.yaml b/.github/workflows/snapshot.yaml index df69bf5..7c53931 100644 --- a/.github/workflows/snapshot.yaml +++ b/.github/workflows/snapshot.yaml @@ -6,7 +6,7 @@ name: Snapshot jobs: - lint-yaml: + yaml: runs-on: ubuntu-latest steps: - uses: actions/checkout@v2 @@ -15,7 +15,7 @@ jobs: format: colored strict: true - lint-markdown: + markdown: runs-on: ubuntu-latest steps: - uses: actions/checkout@v2