1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44
|
name: Code Scan
on:
push:
branches:
- main
- scan
pull_request:
branches:
- main
- scan
jobs:
scan:
name: Scan Codebase via CodeQL
runs-on: ubuntu-latest
permissions:
actions: read
contents: read
security-events: write
strategy:
fail-fast: false
matrix:
language:
- cpp
steps:
- name: Install dependencies
run: |
sudo apt -y update
sudo apt -y install dbus expat libaudit-dev libselinux-dev libsystemd-dev python3-pip
sudo pip3 install meson ninja
- name: Checkout repository
uses: actions/checkout@v4
- name: Initialize CodeQL
uses: github/codeql-action/init@v2
with:
config-file: ./.github/codeql-config.yml
languages: ${{ matrix.language }}
- name: Automatically Build Project
uses: github/codeql-action/autobuild@v2
- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v2
|