diff --git a/.github/codeql/config.yml b/.github/codeql/config.yml new file mode 100644 index 000000000..55aae894c --- /dev/null +++ b/.github/codeql/config.yml @@ -0,0 +1,2 @@ +paths-ignore: + - '__tests__/**' diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml index d2f05185a..cbe3b0a8e 100644 --- a/.github/workflows/codeql-analysis.yml +++ b/.github/workflows/codeql-analysis.yml @@ -1,4 +1,4 @@ -name: "CodeQL" +name: 'CodeQL' on: push: @@ -17,11 +17,6 @@ jobs: contents: read security-events: write - strategy: - fail-fast: false - matrix: - language: [ 'javascript' ] - steps: - name: Checkout repository uses: actions/checkout@v3 @@ -29,7 +24,8 @@ jobs: - name: Initialize CodeQL uses: github/codeql-action/init@v2 with: - languages: ${{ matrix.language }} + config-file: ./.github/codeql/config.yml + languages: javascript - name: Perform CodeQL Analysis uses: github/codeql-action/analyze@v2