Skip to content

ci: enable CodeQL code scanning #7

@microsasa

Description

@microsasa

CodeQL code scanning requires GitHub Advanced Security (GHAS) for private repositories. The scan itself works but results can't be uploaded without GHAS enabled.

Blocked on: GHAS subscription or making the repo public.

When unblocked:

  • Add .github/workflows/codeql.yml with Python language scanning
  • Run on PRs to main + weekly schedule
  • Permissions needed: security-events: write, contents: read, actions: read

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions