Skip to content

Commit 03a9a5f

Browse files
committed
feat: ci: update codeql version (#161)
* feat: ci: update codeql version * tweak: ci: codeql runs on dev branches * tweak: ci: remove drafting release on pull req * tweak: ci: update version of codeql
1 parent 1c26b70 commit 03a9a5f

File tree

3 files changed

+41
-36
lines changed

3 files changed

+41
-36
lines changed

.github/workflows/codeql-analysis.yml

+33-29
Original file line numberDiff line numberDiff line change
@@ -13,12 +13,16 @@ name: "CodeQL"
1313

1414
on:
1515
push:
16-
branches: [ main ]
16+
branches:
17+
- main
18+
- "*-dev"
1719
pull_request:
1820
# The branches below must be a subset of the branches above
19-
branches: [ main ]
21+
branches:
22+
- main
23+
- "*-dev"
2024
schedule:
21-
- cron: '34 21 * * 6'
25+
- cron: "34 21 * * 6"
2226

2327
jobs:
2428
analyze:
@@ -32,40 +36,40 @@ jobs:
3236
strategy:
3337
fail-fast: false
3438
matrix:
35-
language: [ 'go' ]
39+
language: ["go"]
3640
# CodeQL supports [ 'cpp', 'csharp', 'go', 'java', 'javascript', 'python' ]
3741
# Learn more:
3842
# https://docs.github.com/en/free-pro-team@latest/github/finding-security-vulnerabilities-and-errors-in-your-code/configuring-code-scanning#changing-the-languages-that-are-analyzed
3943

4044
steps:
41-
- name: Checkout repository
42-
uses: actions/checkout@v3
45+
- name: Checkout repository
46+
uses: actions/checkout@v4
4347

44-
# Initializes the CodeQL tools for scanning.
45-
- name: Initialize CodeQL
46-
uses: github/codeql-action/init@v2
47-
with:
48-
languages: ${{ matrix.language }}
49-
# If you wish to specify custom queries, you can do so here or in a config file.
50-
# By default, queries listed here will override any specified in a config file.
51-
# Prefix the list here with "+" to use these queries and those in the config file.
52-
# queries: ./path/to/local/query, your-org/your-repo/queries@main
48+
# Initializes the CodeQL tools for scanning.
49+
- name: Initialize CodeQL
50+
uses: github/codeql-action/init@v3
51+
with:
52+
languages: ${{ matrix.language }}
53+
# If you wish to specify custom queries, you can do so here or in a config file.
54+
# By default, queries listed here will override any specified in a config file.
55+
# Prefix the list here with "+" to use these queries and those in the config file.
56+
# queries: ./path/to/local/query, your-org/your-repo/queries@main
5357

54-
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
55-
# If this step fails, then you should remove it and run the build manually (see below)
56-
- name: Autobuild
57-
uses: github/codeql-action/autobuild@v2
58+
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
59+
# If this step fails, then you should remove it and run the build manually (see below)
60+
- name: Autobuild
61+
uses: github/codeql-action/autobuild@v3
5862

59-
# ℹ️ Command-line programs to run using the OS shell.
60-
# 📚 https://git.io/JvXDl
63+
# ℹ️ Command-line programs to run using the OS shell.
64+
# 📚 https://git.io/JvXDl
6165

62-
# ✏️ If the Autobuild fails above, remove it and uncomment the following three lines
63-
# and modify them (or add more) to build your code if your project
64-
# uses a compiled language
66+
# ✏️ If the Autobuild fails above, remove it and uncomment the following three lines
67+
# and modify them (or add more) to build your code if your project
68+
# uses a compiled language
6569

66-
#- run: |
67-
# make bootstrap
68-
# make release
70+
#- run: |
71+
# make bootstrap
72+
# make release
6973

70-
- name: Perform CodeQL Analysis
71-
uses: github/codeql-action/analyze@v2
74+
- name: Perform CodeQL Analysis
75+
uses: github/codeql-action/analyze@v3

.github/workflows/go.yml

+3-3
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ jobs:
1919
uses: actions/setup-go@v4
2020
with:
2121
go-version: ${{ matrix.go-version }}
22-
- uses: actions/checkout@v3
22+
- uses: actions/checkout@v4
2323
- name: Run golangci-lint
2424
uses: golangci/golangci-lint-action@v3
2525
with:
@@ -32,7 +32,7 @@ jobs:
3232
os: [ubuntu-latest, macos-latest, windows-latest]
3333
runs-on: ${{ matrix.os }}
3434
steps:
35-
- uses: actions/checkout@v3
35+
- uses: actions/checkout@v4
3636

3737
- name: Set up Go
3838
uses: actions/setup-go@v4
@@ -50,7 +50,7 @@ jobs:
5050
go-version: [1.21.x]
5151
runs-on: ubuntu-latest
5252
steps:
53-
- uses: actions/checkout@v3
53+
- uses: actions/checkout@v4
5454

5555
- name: Set up Go
5656
uses: actions/setup-go@v4

.github/workflows/release.yml

+5-4
Original file line numberDiff line numberDiff line change
@@ -5,10 +5,11 @@ on:
55
# branches to consider in the event; optional, defaults to all
66
branches:
77
- main
8-
# pull_request event is required only for autolabeler
9-
pull_request:
10-
# Only following types are handled by the action, but one can default to all as well
11-
types: [opened, reopened, synchronize]
8+
- "*-dev"
9+
# # pull_request event is required only for autolabeler
10+
# pull_request:
11+
# # Only following types are handled by the action, but one can default to all as well
12+
# types: [opened, reopened, synchronize]
1213

1314
jobs:
1415
create_release_draft:

0 commit comments

Comments
 (0)