mirror of https://github.com/actions/checkout.git
				
				
				
			codeql should analyze lib not dist
This commit is contained in:
		
							parent
							
								
									3d677ac575
								
							
						
					
					
						commit
						2afe31bc3c
					
				|  | @ -41,7 +41,6 @@ jobs: | |||
|     - name: Checkout repository | ||||
|       uses: actions/checkout@v2 | ||||
| 
 | ||||
|     # Initializes the CodeQL tools for scanning. | ||||
|     - name: Initialize CodeQL | ||||
|       uses: github/codeql-action/init@v1 | ||||
|       with: | ||||
|  | @ -51,21 +50,9 @@ jobs: | |||
|         # Prefix the list here with "+" to use these queries and those in the config file. | ||||
|         # queries: ./path/to/local/query, your-org/your-repo/queries@main | ||||
| 
 | ||||
|     # Autobuild attempts to build any compiled languages  (C/C++, C#, or Java). | ||||
|     # If this step fails, then you should remove it and run the build manually (see below) | ||||
|     - name: Autobuild | ||||
|       uses: github/codeql-action/autobuild@v1 | ||||
| 
 | ||||
|     # ℹ️ Command-line programs to run using the OS shell. | ||||
|     # 📚 https://git.io/JvXDl | ||||
| 
 | ||||
|     # ✏️ If the Autobuild fails above, remove it and uncomment the following three lines | ||||
|     #    and modify them (or add more) to build your code if your project | ||||
|     #    uses a compiled language | ||||
| 
 | ||||
|     #- run: | | ||||
|     #   make bootstrap | ||||
|     #   make release | ||||
|     - run: npm ci | ||||
|     - run: npm run build | ||||
|     - run: rm -rf dist # We want code scanning to analyze lib instead (individual .js files) | ||||
| 
 | ||||
|     - name: Perform CodeQL Analysis | ||||
|       uses: github/codeql-action/analyze@v1 | ||||
|  |  | |||
		Loading…
	
		Reference in New Issue
	
	 eric sciple
						eric sciple