From f9ab0ed8cea8b9868283adab51e926527e60bd2e Mon Sep 17 00:00:00 2001 From: miguelgual2003 Date: Fri, 16 Jan 2026 20:24:11 +0100 Subject: [PATCH 1/3] Implement CodeQL Security Scan in workflow Added CodeQL security scan workflow for Python. --- .github/workflows/main.yml | 24 ++++++++++++++++++++++++ 1 file changed, 24 insertions(+) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 8e1adf7a29..9b2ed69188 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -75,3 +75,27 @@ jobs: run: pylinkvalidate.py -P http://localhost:8000/ - run: echo "Done" + + codeql: + name: CodeQL Security Scan + runs-on: ubuntu-latest + + permissions: + security-events: write + contents: read + + steps: + - name: Checkout code + uses: actions/checkout@v4 + + - name: Initialize CodeQL + uses: github/codeql-action/init@v3 + with: + languages: python + queries: security-and-quality + + # Para Python NO hace falta build ni dependencias + # CodeQL analiza el código fuente directamente + + - name: Perform CodeQL Analysis + uses: github/codeql-action/analyze@v3 From 18e2d886fc353c07ac393c033e62d48552182184 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Asif=20Saif=20Uddin=20=7B=22Auvi=22=3A=22=E0=A6=85?= =?UTF-8?q?=E0=A6=AD=E0=A6=BF=22=7D?= Date: Sun, 29 Mar 2026 15:58:52 +0600 Subject: [PATCH 2/3] Update .github/workflows/main.yml Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> --- .github/workflows/main.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 9b2ed69188..29ed402608 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -86,7 +86,7 @@ jobs: steps: - name: Checkout code - uses: actions/checkout@v4 + uses: actions/checkout@v6 - name: Initialize CodeQL uses: github/codeql-action/init@v3 From 6d0ad385c102d90ef0de17b3178a558a1785df72 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Asif=20Saif=20Uddin=20=7B=22Auvi=22=3A=22=E0=A6=85?= =?UTF-8?q?=E0=A6=AD=E0=A6=BF=22=7D?= Date: Sun, 29 Mar 2026 15:59:04 +0600 Subject: [PATCH 3/3] Update .github/workflows/main.yml Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> --- .github/workflows/main.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 29ed402608..868b440fdf 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -94,8 +94,8 @@ jobs: languages: python queries: security-and-quality - # Para Python NO hace falta build ni dependencias - # CodeQL analiza el código fuente directamente + # For Python, no build or dependencies are required + # CodeQL analyzes the source code directly - name: Perform CodeQL Analysis uses: github/codeql-action/analyze@v3