mirror of
https://github.com/zitadel/zitadel.git
synced 2026-07-25 18:28:00 +00:00
Updates all dependencies to latests versions (apart from the ones where there are already issues to solve their updates). Some updates required minor changes.
66 lines
2.1 KiB
YAML
66 lines
2.1 KiB
YAML
name: "Code Scanning"
|
||
|
||
on:
|
||
push:
|
||
branches:
|
||
- 'main'
|
||
paths-ignore:
|
||
- 'apps/docs/content/**'
|
||
pull_request:
|
||
# The branches below must be a subset of the branches above
|
||
branches:
|
||
- 'main'
|
||
paths-ignore:
|
||
- 'apps/docs/content/**'
|
||
|
||
concurrency:
|
||
group: ${{ github.workflow }}-${{ github.event.pull_request.number || github.ref }}
|
||
cancel-in-progress: true
|
||
|
||
jobs:
|
||
CodeQL-Build:
|
||
runs-on: ubuntu-latest
|
||
strategy:
|
||
fail-fast: false
|
||
matrix:
|
||
language: [go,javascript]
|
||
steps:
|
||
- name: Checkout Repository
|
||
uses: actions/checkout@v4
|
||
- if: matrix.language == 'go'
|
||
name: Install Go
|
||
uses: actions/setup-go@v6
|
||
with:
|
||
go-version-file: go.mod
|
||
- if: matrix.language == 'go'
|
||
name: Set up pnpm
|
||
uses: pnpm/action-setup@v4
|
||
- name: Generate gRPC Stubs and Static Assets
|
||
if: matrix.language == 'go'
|
||
run: |
|
||
pnpm install --frozen-lockfile
|
||
pnpm nx run-many --nxBail --projects @zitadel/api --targets generate-stubs generate-statik generate-assets
|
||
# Initializes the CodeQL tools for scanning.
|
||
- name: Initialize CodeQL
|
||
uses: github/codeql-action/init@v3
|
||
# Override language selection by uncommenting this and choosing your languages
|
||
with:
|
||
languages: ${{ matrix.language }}
|
||
debug: true
|
||
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
|
||
# If this step fails, then you should remove it and run the build manually (see below)
|
||
# - name: Autobuild
|
||
# uses: github/codeql-action/autobuild@v2
|
||
# ℹ️ Command-line programs to run using the OS shell.
|
||
# 📚 https://git.io/JvXDl
|
||
# ✏️ If the Autobuild fails above, remove it and uncomment the following three lines
|
||
# and modify them (or add more) to build your code if your project
|
||
# uses a compiled language
|
||
|
||
# autobuild does not work anymore
|
||
# and to be able to compile without an actual console build, we just need a placeholder in the console dist folder
|
||
- name: Autobuild
|
||
uses: github/codeql-action/autobuild@v3
|
||
- name: Perform CodeQL Analysis
|
||
uses: github/codeql-action/analyze@v3
|