chore: add codeql-analysis workflow - #163
Conversation
|
Thanks for your pull request. It looks like this may be your first contribution to a Google open source project (if not, look below for help). Before we can look at your pull request, you'll need to sign a Contributor License Agreement (CLA). 📝 Please visit https://cla.developers.google.com/ to sign. Once you've signed (or fixed any issues), please reply here with What to do if you already signed the CLAIndividual signers
Corporate signers
ℹ️ Googlers: Go here for more info. |
|
Thanks for your pull request. It looks like this may be your first contribution to a Google open source project (if not, look below for help). Before we can look at your pull request, you'll need to sign a Contributor License Agreement (CLA). 📝 Please visit https://cla.developers.google.com/ to sign. Once you've signed (or fixed any issues), please reply here with What to do if you already signed the CLAIndividual signers
Corporate signers
ℹ️ Googlers: Go here for more info. |
|
@googlebot I signed it! |
Added codeql security analysis github workflow to the repository. |
|
@freelancing-solutions Thanks for the patch! We are discussing the implications of adding CodeQL to this repository (and likely others). I'm not personally familiar with the tool: can you describe your motivation for wanting to add it? |
|
@freelancing-solutions Again, thank you for the patch, and for bringing the CodeQL tool to our attention. For such process-related / CI chores, the team prefers to discuss them and then add them broadly, across most / all the |
Thank you for opening a Pull Request! Before submitting your PR, there are a few things you can do to make sure it goes smoothly:
Fixes #<issue_number_goes_here> 🦕