From 9ccce511a53f38e612c4f54ee46700dcf7ff4e48 Mon Sep 17 00:00:00 2001 From: Ani Agajanyan Date: Sun, 17 Aug 2025 01:06:59 -0700 Subject: [PATCH 1/2] Update CodeQL security analysis workflow --- .github/workflows/codeql.yml | 14 ++++++++------ 1 file changed, 8 insertions(+), 6 deletions(-) diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 058a614..21ab17f 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -1,15 +1,17 @@ -name: "CodeQL Sec Analysis" +name: "CodeQL Security Analysis" on: push: branches: [ "main" ] + pull_request: + branches: [ "main" ] schedule: - - cron: '0 2 * * 1' # Weekly on Monday at 2 AM + - cron: '0 1 * * 6' # Weekly on Saturday at 01:00 jobs: analyze: - name: Analyze (${ matrix.language }) - + name: Analyze (${{ matrix.language }}) + runs-on: ubuntu-latest permissions: # required for all workflows security-events: write @@ -36,5 +38,5 @@ jobs: - name: Initialize CodeQL uses: github/codeql-action/init@v3 with: - languages: ${ matrix.language } - build-mode: ${ matrix.build-mode } + languages: ${{ matrix.language }} + build-mode: ${{ matrix.build-mode }} From 56538731ed76787660487aa6892ae5f6aace368b Mon Sep 17 00:00:00 2001 From: Ani Agajanyan Date: Sun, 17 Aug 2025 22:07:54 -0700 Subject: [PATCH 2/2] Update CodeQL workflow - automated update --- .github/workflows/codeql.yml | 11 ++++++++++- 1 file changed, 10 insertions(+), 1 deletion(-) diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 21ab17f..58acb8a 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -1,3 +1,4 @@ +# Updated by automated script on 2025-08-18 05:07:53 UTC name: "CodeQL Security Analysis" on: @@ -6,7 +7,7 @@ on: pull_request: branches: [ "main" ] schedule: - - cron: '0 1 * * 6' # Weekly on Saturday at 01:00 + - cron: '15 2 * * 6' # Weekly on Saturday at 02:15 jobs: analyze: @@ -40,3 +41,11 @@ jobs: with: languages: ${{ matrix.language }} build-mode: ${{ matrix.build-mode }} + + - name: Autobuild + uses: github/codeql-action/autobuild@v3 + + - name: Perform CodeQL Analysis + uses: github/codeql-action/analyze@v3 + with: + category: "/language:${{matrix.language}}"