Update codeql-analysis.yml

This commit is contained in:
Essem 2020-11-20 13:24:25 -06:00 committed by GitHub
parent 7e597d1d2d
commit 1d04404eaf
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -36,6 +36,22 @@ jobs:
steps:
- name: Checkout repository
uses: actions/checkout@v2
- name: Setup Node.js environment
uses: actions/setup-node@v2.1.2
#with:
# Set always-auth in npmrc
#always-auth: # optional, default is false
# Version Spec of the version to use. Examples: 12.x, 10.15.1, >=10.15.0
#node-version: # optional
# Set this option if you want the action to check for the latest available version that satisfies the version spec
#check-latest: # optional
# Optional registry to set up for auth. Will set the registry in a project level .npmrc and .yarnrc file, and set up auth to read in from env.NODE_AUTH_TOKEN
#registry-url: # optional
# Optional scope for authenticating against scoped registries
#scope: # optional
# Used to pull node distributions from node-versions. Since there's a default, this is typically not supplied by the user.
#token: # optional, default is ${{ github.token }}
# Initializes the CodeQL tools for scanning.
- name: Initialize CodeQL
@ -49,8 +65,8 @@ jobs:
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
# If this step fails, then you should remove it and run the build manually (see below)
- name: Autobuild
uses: github/codeql-action/autobuild@v1
#- name: Autobuild
# uses: github/codeql-action/autobuild@v1
# Command-line programs to run using the OS shell.
# 📚 https://git.io/JvXDl
@ -59,9 +75,8 @@ jobs:
# and modify them (or add more) to build your code if your project
# uses a compiled language
#- run: |
# make bootstrap
# make release
- run: |
npm run build
- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v1