CodeQL Scanning is part of GitHub Advanced Security.

We want to use the advanced setup method. For many apps, it'll just work out of the box. Get it working so that we have a workflow in the .github/workflows folder of this repo. Advanced mode does that.