diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 9a8afbf121..f94927f446 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -28,6 +28,11 @@ jobs: with: fetch-depth: 0 # avoid shallow clone so nbgv can do its work. + - name: Initialize CodeQL + uses: github/codeql-action/init@v3 + with: + languages: csharp + - name: Setup .NET Core uses: actions/setup-dotnet@v4 @@ -52,6 +57,9 @@ jobs: with: flags: dotnet + - name: Perform CodeQL Analysis + uses: github/codeql-action/analyze@v3 + build-generator: name: "Build Generator" runs-on: ubuntu-latest @@ -62,6 +70,11 @@ jobs: fetch-depth: 0 # avoid shallow clone so nbgv can do its work. submodules: recursive + - name: Initialize CodeQL + uses: github/codeql-action/init@v3 + with: + languages: javascript + - name: Setup Node.js uses: actions/setup-node@v4 with: @@ -85,6 +98,9 @@ jobs: run: npm run build working-directory: ./src/generator + - name: Perform CodeQL Analysis + uses: github/codeql-action/analyze@v3 + build-autorest: name: "Build Autorest.Bicep" runs-on: ubuntu-latest @@ -95,6 +111,11 @@ jobs: fetch-depth: 0 # avoid shallow clone so nbgv can do its work. submodules: recursive + - name: Initialize CodeQL + uses: github/codeql-action/init@v3 + with: + languages: javascript + - name: Setup Node.js uses: actions/setup-node@v4 with: @@ -122,3 +143,5 @@ jobs: run: npm test working-directory: ./src/autorest.bicep + - name: Perform CodeQL Analysis + uses: github/codeql-action/analyze@v3