From 793fe1783cf508d7a155d4745960a89abf4ce014 Mon Sep 17 00:00:00 2001 From: Henry Mercer Date: Mon, 15 Sep 2025 14:10:32 +0100 Subject: [PATCH] CI: Configure Python analysis --- .github/codeql/codeql-actions-config.yml | 4 ---- ...onfig.yml => codeql-config-javascript.yml} | 0 .github/workflows/codeql.yml | 20 +++++++++++++------ 3 files changed, 14 insertions(+), 10 deletions(-) delete mode 100644 .github/codeql/codeql-actions-config.yml rename .github/codeql/{codeql-config.yml => codeql-config-javascript.yml} (100%) diff --git a/.github/codeql/codeql-actions-config.yml b/.github/codeql/codeql-actions-config.yml deleted file mode 100644 index 7f3b3f3a8..000000000 --- a/.github/codeql/codeql-actions-config.yml +++ /dev/null @@ -1,4 +0,0 @@ -# Configuration for the CodeQL Actions Queries -name: "CodeQL Actions Queries config" -queries: - - uses: security-and-quality diff --git a/.github/codeql/codeql-config.yml b/.github/codeql/codeql-config-javascript.yml similarity index 100% rename from .github/codeql/codeql-config.yml rename to .github/codeql/codeql-config-javascript.yml diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 1bb3f14b7..7e9d79f53 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -95,7 +95,7 @@ jobs: id: init with: languages: javascript - config-file: ./.github/codeql/codeql-config.yml + config-file: ./.github/codeql/codeql-config-javascript.yml tools: ${{ matrix.tools }} # confirm steps.init.outputs.codeql-path points to the codeql binary - name: Print CodeQL Version @@ -108,11 +108,16 @@ jobs: with: category: "/language:javascript" - - analyze-actions: + analyze-other: runs-on: ubuntu-latest strategy: + matrix: + include: + - language: actions + build-mode: none + - language: python + build-mode: none fail-fast: false permissions: @@ -125,9 +130,12 @@ jobs: - name: Initialize CodeQL uses: ./init with: - languages: actions - config-file: ./.github/codeql/codeql-actions-config.yml + languages: ${{ matrix.language }} + build-mode: ${{ matrix.build-mode }} + config: > + queries: + - uses: security-and-quality - name: Perform CodeQL Analysis uses: ./analyze with: - category: "/language:actions" + category: "/language:${{ matrix.language }}"