sbom-tools 0.1.18

Semantic SBOM diff and analysis tool
Documentation
name: CodeQL

on:
  push:
    branches: [main]
  pull_request:
    branches: [main]
  schedule:
    - cron: "0 3 * * 1" # Monday 03:00 UTC

permissions: read-all

jobs:
  analyze:
    name: Analyze Rust
    runs-on: ubuntu-latest
    permissions:
      security-events: write
      contents: read
      actions: read

    steps:
      - name: Checkout
        # v6.0.2
        uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd

      - name: Initialize CodeQL
        # v4
        uses: github/codeql-action/init@c10b8064de6f491fea524254123dbe5e09572f13
        with:
          languages: rust
          build-mode: none

      - name: Perform CodeQL Analysis
        # v4
        uses: github/codeql-action/analyze@c10b8064de6f491fea524254123dbe5e09572f13