A web application to visualize and manage open source project data from the Ecosyste.ms API.

github.com/github/codeql-action

Actions for running CodeQL analysis
https://github.com/github/codeql-action

Improve log message

898ae164133031e7f05a37d10bfd89934e013344 authored 4 months ago
Include diagnostics in bundle

5c583bbb19e1ad139d93d0dbded840e606d4be4e authored 4 months ago
More error message improvements

554b93127bd6216d0204c2465700db15ec87e497 authored 4 months ago
Tweak diagnostic message

d24014a7495be425456bd507f6fff05af7d3b2ab authored 4 months ago
Improve error messages

3dd1275368a3043e320e9e8193a6e1ff858bb33e authored 4 months ago
Improve diagnostic message wording

cc0dce044b5692fb1fb7437b88f664e898ec8447 authored 4 months ago
Only store overlay status if analysis failed

ef58c00dfee01eef87678dbfd68028e6ecbdf58b authored 4 months ago
Add status page diagnostic when overlay skipped

7b7a951e08af59ecde2163e55c46a301dad55dfc authored 4 months ago
Be more explicit about attempt to build overlay DB

6c405c2562eb8d106668749d4264b45306a0da18 authored 4 months ago
Sort doc URLs

0c47ae1c1806a91c92a94a7d555cfb283edb4784 authored 4 months ago
Introduce feature flags for saving and checking status

827bba691fc3d66e6fe21f176c93175341e0579b authored 4 months ago
Save overlay status to Actions cache

96961e0ee3b09e39b8740f8957b330197c2bb0e0 authored 4 months ago
Skip overlay analysis based on cached status

ebad062f08a05862221dd0472eb662ac1ed745eb authored 4 months ago
Generalise status to multiple languages

e275d63e1d19e59120e92f42c6ee561cc68f2b08 authored 4 months ago
Add save and restore methods

69c281997208b0651c678dde4834d8aaf34b6ccb authored 4 months ago
Compute cache key for overlay language status

d28d9967fea9c30a7ab197cb429c61e99182d5ee authored 4 months ago
Create separate directory for overlay source code

d1bdc0ea054053bbb4d359a08f626591a97b294a authored 4 months ago
Fix typos

c1d6ee5477d77f182ea8909702c9ce64433f0d5d authored 4 months ago
Clear GHA `JAVA_HOME_*` env vars for `discoverActionsJdks` test

ef9cfd91a8f546c9f389afeb0af47d20f27c8363 authored 4 months ago
Wrap `checkProxyEnvironment` call in `try`/`catch` for good measure

4250b466b25637ec7f8d39a3c5bd50d5d413bc1e authored 4 months ago
Find likely JDK locations and check configurations

a3d7d36aa692f843652d73833db0a4c452fceebe authored 4 months ago
Log information about proxy-related environment variables

33e2dff08237e0617ec508898c0184a91248eec4 authored 4 months ago
Add enum for Java-related env var names

bff89dcba403558925421da93857bdd4fd43b785 authored 4 months ago
Remove unnecessary check

d6ea6709b92611354cadb6e9c92ed1dc2b0bdab5 authored 4 months ago
Rename `csra` to `risk-assessment`

f315d82bd726731891574d1c233bfe427040a328 authored 4 months ago
Merge pull request #3485 from github/mbg/java/network-debugging

Add feature to enable Java network debugging

ebce69a4b737f0087ee5e7b8ce7526967c52c972 authored 4 months ago
Merge remote-tracking branch 'origin/main' into mbg/features/offline-features

ab2580041c19e8f45c05028386b55a552e02d19a authored 4 months ago
Use `all`

d1689c93071d4062a7ccbe4e7de9ea75d94a3321 authored 4 months ago
Merge pull request #3484 from github/mbg/cli/force-nightly

Add feature for forcing the `nightly` bundle in `dynamic` workflows

147d1495e44cd79bcd652a4bd2826462378e311d authored 4 months ago
Merge branch 'main' into mbg/java/network-debugging

3e37216660ab85d10c19619c9b43d814f9d3c60d authored 4 months ago
Merge pull request #3482 from github/mbg/release/author-or-merger

Release notes: Use author if they are GitHub staff

ad5a6c0147a3a8754a04fd6f7ac7c176951ec56e authored 4 months ago
Merge pull request #3473 from github/mbg/start-proxy/cert-gen

Improve proxy certificate generation

aee29a19d72cf73e8b6171f9510db1771d49325b authored 4 months ago
Use `init` in new check workflow

ac74c2835a29f57ec69bb70be693b2428f9f6365 authored 4 months ago
Change diagnostic level to `note`

f8c75d3f32959b4d941a1f12d3abf8f63dcf7f08 authored 4 months ago
Add diagnostic when a nightly release is forced

e315c6fd3b548c667efed3fa4303e6e4600796aa authored 4 months ago
Allow `addNoLanguageDiagnostic` to be used without a `Config`

e6a312a771d49a9a7983df76ad0347cfb53530fd authored 4 months ago
Complete JSDoc

73f5a299602884ccaa1a2f0c5e7706dc00a8bc1e authored 4 months ago
Improve variable names and comments

Also set default `GITHUB_EVENT_NAME` in `setupActionsVars`

8b734d3bc2f0f9afb51c200eb4a311cc6ea5782e authored 4 months ago
Add debugging options to `JAVA_TOOL_OPTIONS` when FF is enabled

e21e4ca93f825386ea5a94897f57845eb783a295 authored 4 months ago
Add `JavaNetworkDebugging` feature

595ce2dc3e2ce9f020f372ebc90628c40baa2b79 authored 4 months ago
Add integration test

a61e3cb9f2c4b91de690400d49beb2a09e3920be authored 4 months ago
Force `nightly` bundle when FF is enabled

d5f0374a1f31bffc753a6ab5b56d9de935c74ec9 authored 4 months ago
Add unit test for `tools: nightly`

466a4f00eb612b2af75149e4cb03a47eac705b9c authored 4 months ago
Improve docs in `setup-codeql`

817d568ca00ecf6ab45fe58f9a2fabab0815be84 authored 4 months ago
Add `ForceNightly` feature

34d43db4c6306018914b50edfddf5a85c760d8ed authored 4 months ago
Use `OfflineFeatures` when `!supportsFeatureFlags` as well

db834c9e1daefd2c4ad756dcc3f454c7c42660cc authored 4 months ago
Restore test improvements from previous PR

7af50a43c1e6c04a1713406a47d0a3aa83465654 authored 4 months ago
Log when using `OfflineFeatures` for CCR

60dee3dbd320faa4ae279d3039f3b7121a412982 authored 4 months ago
Change FFs not supported log message

0874cf9f8b8d56bb4ba51c0c84179400003a27bd authored 4 months ago
Revert "Merge pull request #3476 from github/henrymercer/retry-auth-errors"

This reverts commit 9658e23e5b27239b07c69f317b820c9a6fa90080, reversing
changes made to 2d6b98c7...

ea1a400e13809854fb5b93c8aa90b4a7da87b788 authored 4 months ago
Remove superfluous `try`/`catch`

248d7971c26d1ec50837b2fd1c34f13537a6fb66 authored 4 months ago
Use author if they are GitHub staff

64940fad4a6b0b2c35ad79bc05e34be1b26197a6 authored 5 months ago
Merge pull request #3480 from github/mergeback/v4.32.3-to-main-9e907b5e

Mergeback v4.32.3 refs/heads/releases/v4 into main

ef618feace3c4838ae42b239ab86e8fb46437508 authored 5 months ago
Rebuild

6bddc7956d25a0fb67f8751e3abe666360a249b7 authored 5 months ago
Update changelog and version after v4.32.3

01fcdceb8906e52985bcbe4d477aa3d79d35d673 authored 5 months ago
Merge pull request #3479 from github/update-v4.32.3-4bf6fa4e2

Merge main into releases/v4

9e907b5e64f6b83e7804b09294d44122997950d6 authored 5 months ago
Update changelog for v4.32.3

1814c9fbfdacff163f64a33db0c8f4310a2075dd authored 5 months ago
Merge pull request #3478 from github/mbg/changelog/add-connection-test-entry

Add changelog entry for #3466

4bf6fa4e2d56c1f3b43ad70ef81b160be508aafa authored 5 months ago
Merge pull request #3476 from github/henrymercer/retry-auth-errors

Avoid requesting features in CCR

9658e23e5b27239b07c69f317b820c9a6fa90080 authored 5 months ago
Find all missing messages in `checkExpectedLogMessages`

e1933c66bd2c7de9c02c59b0b3d96cdb8aeb1537 authored 5 months ago
Add `RecordingLogger` that keeps track of groups

edf36092cffa7b99b398954c2d9f103acdacc130 authored 5 months ago
Extend `uploadPayload` tests to all analysis kinds

15a3d32df0d8c0d741d5ce8fb1887a21c5d3620f authored 5 months ago
CSRA category does not need to be adjusted

98359944143a63a5de4d812b6759c105c20c26b1 authored 5 months ago
Validate `CODEQL_ACTION_CSRA_ASSESSMENT_ID` value

0ce6420f8e7aab68e43369a36f1635e84e657c4c authored 5 months ago
Add changelog entry for #3466

be75dd92eac202c8797dba88d21de3d63f68ce88 authored 5 months ago
Add test to check that OfflineFeatures doesn't use the API client

bc76ceafafa5c2d0ae4d01fe72514904a2467842 authored 5 months ago
Add `mockCCR` helper to `testing-utils`

377300bcda1ad44012e0b0799b3ccc68652da4dc authored 5 months ago
Move FF test utils out of main file

ee8360df595193d273b2137710d0962b5a5a9447 authored 5 months ago
Return `OfflineFeatures` for CCR

9dcfdf2c9c3c11ebc9cae441f0002aea80350e9f authored 5 months ago
Abstract over `FeatureEnablement` implementations with `initFeatures`

2c9bc45d4654f21e39a4b0ea16bdd4f667749c93 authored 5 months ago
Add `OfflineFeatures` class

368f322a0919b4d86ca94485b654131d3bd32cf9 authored 5 months ago
Move `getDefaultCliVersion` out of `GitHubFeatureFlags`

It doesn't need to be in there since it doesn't depend on the API itself and call `getDefaultCli...

5283c3ba5a235eaef87458fb9c44576f6ddf65f8 authored 5 months ago
Apply suggestion from @Copilot

Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>

05bca54402fd346d5bb6baa7078a0b6e12cbb926 authored 5 months ago
Merge pull request #3475 from github/henrymercer/retry-auth-errors

Retry API authentication errors since these can be transient

2d6b98c7cf7260afd6954ee7de478b21127b40f4 authored 5 months ago
Avoid requesting features in CCR

876cecb3837313f6013c27801cf22b7f3ed7ac8d authored 5 months ago
Retry API authentication errors since these can be transient

43b46a19bec8253deaf46057ecff156567edc8bc authored 5 months ago
Merge pull request #3472 from github/dependabot/github_actions/dot-github/workflows/actions-minor-299c02fd34

Bump ruby/setup-ruby from 1.286.0 to 1.288.0 in /.github/workflows in the actions-minor group ac...

8ad4b6ec58178e8dbb44a62677274b3a5916baa9 authored 5 months ago
Merge pull request #3467 from github/dependabot/npm_and_yarn/npm-minor-5707d09364

Bump the npm-minor group with 2 updates

4edc7d2e8233bed8da52eef87a714924d761469d authored 5 months ago
Add `BasePayload` type and derive `AssessmentPayload` from it

2adcb6464ed1599265239c021cb981d575008218 authored 5 months ago
Change `assessment_id` to be a number

da67096c6fa6d294a2ef9d1e1d381ca62aff7d9a authored 5 months ago
Add `assessment_id` to CSRA payload

c48cd247df861d9ba3bc6d36ab6cbc5c386f47fc authored 5 months ago
Add `transformPayload` to `AnalysisConfig`

0cfcceb4b8d171a552bd69887d490f6a4d3bf594 authored 5 months ago
Type the upload payload object

cbb92e7ff669385e3de54725992d15f43f10a5db authored 5 months ago
Add `csra` case to `addSarifExtension` test

db9346285d6fe8d74481f8dbee03302c163e566a authored 5 months ago
Update PR check for `csra`

2de76b6faa8d19e7e5625b329dd551fcb7c07cd8 authored 5 months ago
Update `getPrimaryAnalysis*` and add test

6a17f4e25875a628d745e764fd91be895e66294e authored 5 months ago
Remove redundant analysis kind check

8cc4d2539be9c0611c322315a28ec4ec6b4e1284 authored 5 months ago
Update `upload-lib` tests for CSRA

406bbfcef143cd98ac5732d7ef8d582eb97ae6a0 authored 5 months ago
Fix `CodeScanning` config's `sarifPredicate` and add test

5132eb53f286efeb5a0ab86e0ecc0ff8920107ec authored 5 months ago
Enforce that only compatible kinds can be enabled concurrently

5b3261bcbf50d677ad985c371e13611679173bd0 authored 5 months ago
Add `csra` analysis kind

9267d8d51e8b42a6a4d4fd944280c2f9cdc5335c authored 5 months ago
Fix typo in test

bc1164e014587d7238a036a340d47b7549140779 authored 5 months ago
Add some basic unit tests

7801eda17742a144024a9391ef1fa79e25a7fd23 authored 5 months ago
Merge pull request #3466 from github/mbg/start-proxy/test-connections

Test connections to private registries in `start-proxy`

ff33514494ef2488964273e05cbfb9b29533d9f0 authored 5 months ago
Gate updated cert gen behind FF

b1d963ed8fe199044952330e64cbf84c686b7d0a authored 5 months ago
Move certificate code to its own file

d636fb3f6389fb30043397cafe2dd0d19a297fea authored 5 months ago
Skip checks for non-URLs for now

efb92e2714025a125f7ddc2ff85584c7dc47bc7b authored 5 months ago
Rebuild

d73644591f1d65fc96803b061581865fff924d55 authored 5 months ago
Bump ruby/setup-ruby

Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-rub...

41d2cc39b6a99ae61d1299a95975add100c43c1f authored 5 months ago
Rebuild

be578c77358c95ae058865166edafeff84dfe574 authored 5 months ago