devskim.yml 606 B

123456789101112131415161718192021222324252627282930
  1. name: DevSkim
  2. on:
  3. push:
  4. branches: [ "github" ]
  5. pull_request:
  6. branches: [ "github" ]
  7. schedule:
  8. - cron: '35 8 * * 5'
  9. jobs:
  10. lint:
  11. name: DevSkim
  12. runs-on: ubuntu-latest
  13. permissions:
  14. actions: read
  15. contents: read
  16. security-events: write
  17. steps:
  18. - name: Checkout code
  19. uses: actions/checkout@v3
  20. - name: Run DevSkim scanner
  21. uses: microsoft/DevSkim-Action@v1
  22. - name: Upload DevSkim scan results to GitHub Security tab
  23. uses: github/codeql-action/upload-sarif@v3
  24. with:
  25. sarif_file: devskim-results.sarif