# Copyright (c) Microsoft Corporation. All rights reserved. # # This workflow uses actions that are not certified by GitHub. # They are provided by a third-party and are governed by # separate terms of service, privacy policy, and support # documentation. # rust-clippy is a tool that runs a bunch of lints to catch common # mistakes in your Rust code and help improve your Rust code. # More details at https://github.com/rust-lang/rust-clippy # and https://rust-lang.github.io/rust-clippy/ name: rust-clippy analyze on: push: branches: [ "main" ] pull_request: # The branches below must be a subset of the branches above branches: [ "main" ] workflow_dispatch: schedule: # Run at 8:00 AM every day - cron: "0 8 * * *" jobs: rust-clippy-analyze: name: Run rust-clippy analyzing runs-on: ubuntu-latest permissions: contents: read security-events: write actions: read # only required for a private repository by github/codeql-action/upload-sarif to get the Action run status steps: - name: Checkout code uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2 - name: Setup Rust toolchain uses: ./.github/actions/toolchains/rust - name: Cache cargo uses: Swatinem/rust-cache@c19371144df3bb44fab255c43d04cbc2ab54d1c4 # v2.9.1 with: shared-key: ${{ runner.os }}-regorus - name: Install required cargo run: cargo install clippy-sarif sarif-fmt - name: Fetch run: cargo fetch --locked - name: Run rust-clippy run: cargo xtask clippy --sarif rust-clippy-results.sarif - name: Upload analysis results to GitHub if: ${{ hashFiles('rust-clippy-results.sarif') != '' }} uses: github/codeql-action/upload-sarif@95e58e9a2cdfd71adc6e0353d5c52f41a045d225 # v3.29.11 with: sarif_file: rust-clippy-results.sarif wait-for-processing: true