@@ -125,6 +125,17 @@ jobs:
125125 key : ${{ runner.os }}-${{ runner.arch }}-repo-tycho-${{ hashFiles('target-platforms/target-platform-latest/target-platform-latest.target') }}
126126
127127
128+ # https://docs.github.com/en/code-security/code-scanning
129+ - name : Initialize CodeQL
130+ uses : github/codeql-action/init@v4 # https://github.com/github/codeql-action
131+ with :
132+ languages : ${{ matrix.language }}
133+ # https://github.com/github/codeql-action#build-modes
134+ build-mode : ${{ matrix.build-mode }}
135+ # https://docs.github.com/en/code-security/code-scanning/creating-an-advanced-setup-for-code-scanning/customizing-your-advanced-setup-for-code-scanning#using-queries-in-ql-packs
136+ queries : +security-and-quality
137+
138+
128139 - name : " Build with Maven 🔨"
129140 if : matrix.language == 'java'
130141 run : |
@@ -147,17 +158,6 @@ jobs:
147158 clean verify
148159
149160
150- # https://docs.github.com/en/code-security/code-scanning
151- - name : Initialize CodeQL
152- uses : github/codeql-action/init@v4 # https://github.com/github/codeql-action
153- with :
154- languages : ${{ matrix.language }}
155- # https://github.com/github/codeql-action#build-modes
156- build-mode : ${{ matrix.build-mode }}
157- # https://docs.github.com/en/code-security/code-scanning/creating-an-advanced-setup-for-code-scanning/customizing-your-advanced-setup-for-code-scanning#using-queries-in-ql-packs
158- queries : +security-and-quality
159-
160-
161161 - name : Perform CodeQL Analysis
162162 uses : github/codeql-action/analyze@v4 # https://github.com/github/codeql-action
163163 with :
0 commit comments