From 6f2afe0088e03c4e6a4635113c799f78f718ee0b Mon Sep 17 00:00:00 2001 From: Tim Schaub Date: Thu, 18 Nov 2021 15:56:24 -0700 Subject: [PATCH 1/2] Update the security scan task --- .github/codeql/config.yml | 4 ---- .github/workflows/security.yml | 11 ++--------- 2 files changed, 2 insertions(+), 13 deletions(-) delete mode 100644 .github/codeql/config.yml diff --git a/.github/codeql/config.yml b/.github/codeql/config.yml deleted file mode 100644 index 1402d55d8b..0000000000 --- a/.github/codeql/config.yml +++ /dev/null @@ -1,4 +0,0 @@ -name: "OpenLayers CodeQL Config" - -paths: - - src diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index 5a724445b4..520e42e574 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -15,20 +15,13 @@ jobs: runs-on: ubuntu-latest steps: - - name: Checkout repository - uses: actions/checkout@v2 - with: - # Must fetch at least the immediate parents so that if this is - # a pull request then we can checkout the head of the pull request. - # Only include this option if you are running this workflow on pull requests. - fetch-depth: 2 + - uses: actions/checkout@v2 - # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL uses: github/codeql-action/init@v1 with: languages: javascript - config-file: ./.github/codeql/config.yml + source-root: src - name: Perform CodeQL Analysis uses: github/codeql-action/analyze@v1 From 26d5b2163ad8760203ee10c28199b603e80b0e07 Mon Sep 17 00:00:00 2001 From: Tim Schaub Date: Fri, 19 Nov 2021 08:36:36 -0700 Subject: [PATCH 2/2] Remove CodeQL workflow --- .github/workflows/security.yml | 27 --------------------------- 1 file changed, 27 deletions(-) delete mode 100644 .github/workflows/security.yml diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml deleted file mode 100644 index 520e42e574..0000000000 --- a/.github/workflows/security.yml +++ /dev/null @@ -1,27 +0,0 @@ -name: "Security Scan" - -on: - push: - branches: - - main - pull_request: - branches: - - main - schedule: - - cron: '0 0 * * 0' # At 00:00 on Sunday - -jobs: - codeql: - runs-on: ubuntu-latest - - steps: - - uses: actions/checkout@v2 - - - name: Initialize CodeQL - uses: github/codeql-action/init@v1 - with: - languages: javascript - source-root: src - - - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@v1