Skip to content

refactor: modularize the sdk codebase #86

refactor: modularize the sdk codebase

refactor: modularize the sdk codebase #86

Workflow file for this run

# Copyright AGNTCY Contributors (https://github.com/agntcy)
# SPDX-License-Identifier: Apache-2.0
name: "CodeQL Advanced"
on:
push:
branches: ["main"]
pull_request:
branches: ["main"]
schedule:
- cron: "42 5 * * 6"
workflow_dispatch:
jobs:
analyze:
name: Analyze
# Runner size impacts CodeQL analysis time. To learn more, please see:
# - https://gh.io/recommended-hardware-resources-for-running-codeql
# - https://gh.io/supported-runners-and-hardware-resources
# - https://gh.io/using-larger-runners (GitHub.com only)
# Consider using larger runners or machines with greater resources for possible analysis time improvements.
runs-on: ubuntu-latest
permissions:
# required for all workflows
security-events: write
# required to fetch internal or private CodeQL packs
packages: read
# only required for workflows in private repositories
actions: read
contents: read
steps:
- name: Checkout repository
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Set up Python
uses: actions/setup-python@a309ff8b426b58ec0e2a45f0f869d46889d02405 # v6.2.0
with:
python-version: "3.14"
cache: "pip"
- name: Install Python dependencies
shell: bash
run: |
echo "📦 Installing Python dependencies..."
# Install dependencies for Python SDK
if [ -f "pyproject.toml" ]; then
pip install -e . || echo "Failed to install Python SDK"
fi
# Install dependencies for examples
if [ -f "examples/requirements.txt" ]; then
cd examples
pip install -r requirements.txt || echo "Failed to install example requirements"
cd ..
fi
echo "✅ Python dependencies installed"
# Initializes the CodeQL tools for scanning.
- name: Initialize CodeQL
uses: github/codeql-action/init@68bde559dea0fdcac2102bfdf6230c5f70eb485e # v4.35.4
with:
languages: python
build-mode: none
queries: +security-extended,security-and-quality
config: |
name: "CodeQL Config"
queries:
- uses: security-extended
- uses: security-and-quality
query-filters:
- exclude:
# Helm values files use empty strings as defaults
id: js/empty-password-in-configuration-file
paths-ignore:
- "**/*_pb2.py"
- "**/*_pb2_grpc.py"
- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@68bde559dea0fdcac2102bfdf6230c5f70eb485e # v4.35.4
with:
category: "/language:python"