A web application to visualize and manage open source project data from the Ecosyste.ms API.

github.com/github/codeql-action

Actions for running CodeQL analysis
https://github.com/github/codeql-action

Merge pull request #3436 from github/mbg/rebuild-js-es2022

Update JS for ES2022

173919c9d5e0824b9d3c6b3f81519a14bccff6d7 authored 5 months ago
Merge branch 'main' into henrymercer/compute-job-status-if-no-config

6095dc4d51292aa664d8c2f0cef4ac07764c2dc6 authored 5 months ago
Split up `getFinalJobStatus`

b333fc6f5b7ba8690acb06c1f079e539b979defe authored 5 months ago
Update comment

60b658ed10f06706001b2ab77cc21ccf248615ca authored 5 months ago
Update JS

e4e324705e5f582ee4861cbf4f820c94f0e57449 authored 5 months ago
Rebuild

faf7a50b0150e7f1a3111c419dee4752c6ce6a0e authored 5 months ago
Merge pull request #3422 from github/mbg/start-proxy/warn-if-pat-without-username

Warn if a private registry configuration uses a PAT, but has no username

34cae51104e71d6c91312a99711573bf23ab40d2 authored 5 months ago
Add unit tests for file coverage enablement

9308bcd6bbf87c64808dde10aa2819dfcc6c5acd authored 5 months ago
Merge pull request #3432 from github/dependabot/npm_and_yarn/actions/github-8.0.0

Bump @actions/github from 7.0.0 to 8.0.0

fa9b76ac378e31deb3e754ea3c54469c2891c81e authored 5 months ago
Remove `@octokit/plugin-retry` from Dependabot `ignore` list

6059a66dec375044f796731e169fe44dd59b671d authored 5 months ago
Update `@octokit/plugin-retry`

cb4fc9e8db9201372c0da6f141edc4d2120e8652 authored 5 months ago
Bump ES version, required by newer `@octokit/request-error`

be82188a2acd9cf265bac1b2ea3e7d0609557b9e authored 5 months ago
Add `cooldown` settings for Dependabot

2591c2031f870d21b9b977f5ae44dcc094d772b2 authored 5 months ago
Merge pull request #3433 from github/dependabot/github_actions/dot-github/workflows/actions-minor-69d791f5c9

Bump ruby/setup-ruby from 1.284.0 to 1.286.0 in /.github/workflows in the actions-minor group ac...

bd9f639752973b8438be5388158675637e1034f9 authored 5 months ago
Use `.match` in `isAuthToken` and add repeated call to test

c656a11252fa34145fdc7524bbbcdf5d40e4946d authored 5 months ago
Merge branch 'main' into mbg/start-proxy/warn-if-pat-without-username

0a0c3a2e09e15576548242171b22dc789cacab12 authored 5 months ago
Rebuild

46a8de52fca997245898e4fc973cf2e479879494 authored 5 months ago
Bump ruby/setup-ruby

Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-rub...

f8cea24201f728a8818888d8699b220644359ea3 authored 5 months ago
Bump @actions/github from 7.0.0 to 8.0.0

Bumps [@actions/github](https://github.com/actions/toolkit/tree/HEAD/packages/github) from 7.0.0...

b1993d91392e22914dce8b393fe7de91bf2da87a authored 5 months ago
Merge pull request #3429 from github/mergeback/v4.32.0-to-main-b20883b0

Mergeback v4.32.0 refs/heads/releases/v4 into main

ee1e1399e292f3386c840526dac6a4dc7509ad72 authored 5 months ago
Rebuild

e7d3af2e1e2aaec398955e22a4d4f6f852bad699 authored 5 months ago
Update changelog and version after v4.32.0

13a6d8be9534f0bc68a7d41e00522a9a27f6d8dd authored 5 months ago
Merge pull request #3428 from github/update-v4.32.0-e3b8227a2

Merge main into releases/v4

b20883b0cd1f46c72ae0ba6d1090936928f9fa30 authored 5 months ago
Exclude PR check from feature flag

bf20b3e07b36147df035fdd0330c20f193a91bd6 authored 5 months ago
Explain why we ignore extra baseline files options

f1aa4f497a55bf3d2212738286a05d145607a822 authored 5 months ago
Improve log message

9a55d5bc5f895fecc3e45438f3ec7731948454f7 authored 5 months ago
Move to separate function

17cd47509988204615feabcca9b6dc0b4ae03d44 authored 5 months ago
Update changelog for v4.32.0

c9aa45dd0f8ba0b0433386779eb4798c2545156b authored 5 months ago
Merge pull request #3427 from github/henrymercer/bump-for-new-minor-series

Bump the Action minor version number on new CodeQL minor version series

e3b8227a28dee88b8eaf5597d892a0cea497e634 authored 5 months ago
Compare minor version number

This deals with the case that we skip `x.y.0` and go straight to `x.y.1`.

8a01181ce209b3e3f51c6add1b9e1e744bdf0064 authored 5 months ago
Bump minor version for CLI v2.24.0

80e142568fc335997bbf78abac097448213bd9ae authored 5 months ago
Bump the Action minor version number on new CodeQL minor version series

b748848f27bc46a97bbb965c606bbc298e760a9a authored 5 months ago
Merge pull request #3425 from github/update-bundle/codeql-bundle-v2.24.0

Update default bundle to 2.24.0

5e767eff5aa6e2b719f353611ff3c363d6225d18 authored 5 months ago
Add changelog note

975286947045be7e8b204a16b36b1b04b9feef86 authored 5 months ago
Update default bundle to codeql-bundle-v2.24.0

c62c214723e7c0cdfb907bede6988df3a0640c7e authored 5 months ago
Indulge `caniuse-lite` to avoid build warnings

18c2cfc76579432289b7d702e29ee69f1b2fcf53 authored 5 months ago
Merge pull request #3423 from github/mbg/ci/yq-windows

Add `installYq` option to `sync.py` and install `yq` directly from GitHub release

25a224b8085c21d4d61b7fc051468805fc3ac490 authored 5 months ago
Log when file coverage info is disabled

1996ca9f5de755225d03010f3ef0dba3173683fe authored 5 months ago
Don't log empty summaries

12c4c7d0e9cee3768780e416b8bbb5de69cc4034 authored 5 months ago
Move `yq` version into env var and add comment

3657da1eac4b11c83691b98b74175187b905100a authored 5 months ago
Mention caveat in feature JSDoc

919e8aaa401fabb42a69baa7d348e3bb6d04629c authored 5 months ago
Use FF to disable baseline file coverage

4918026b93b8ced8934d028b83dc9858b66cd52e authored 5 months ago
Remove unused `database print-baseline`

e8c164b9021aac617aba0fdb3924a085ad1d9a3f authored 5 months ago
Install `yq` directly from GitHub release

605d404db0cf675582be6ebf20124de53bf13043 authored 5 months ago
Add `installYq` option to `sync.py` and cache downloads

efea9cca026eff7fe5311a32572d0b8eda9bfdd5 authored 5 months ago
Warn if a private registry configuration uses a PAT, but has no username

9fccf271ffa7655c072e3a14cc6dbe1075b753c6 authored 5 months ago
Move `makeTestToken` to `testing-utils`

c12cf8d49a7955ab2eb48d716481659cf130c336 authored 5 months ago
Add `isAuthToken` function, with tests

0fcbec3eec443e43e499131cf5a041b1cbee9e65 authored 5 months ago
Extend unit tests to cover all token types

0ae8b05d08e50edcdb70d113fd46da65e300a0e4 authored 5 months ago
Use enum for token types

49cdf744d9616da1995b4f2135ae311b7eb7fda5 authored 5 months ago
Add fine-grained tokens to `GITHUB_TOKEN_PATTERNS`

aac4202424d4a1ac1e8fdab451ec0d6ee33236e5 authored 5 months ago
Add feature flag to skip file coverage information on PRs

e7ece62b96b5323c163063d08edfe881543b8bd0 authored 5 months ago
Tolerate failures loading repository properties

d9e374ef8544b6cf18b421327a2985cf3b1544bb authored 5 months ago
Add result type

f4b47e70135900fb6341f0750a612c9b2844eb59 authored 5 months ago
Improve logging when no known repository properties found

4e14537b54276a82b430c5d1a1eaff8b0e027ae9 authored 5 months ago
Only load repository properties for repos owned by orgs

e142eee9b41ff6767a14780c8eb561f611f56006 authored 5 months ago
Simplify computation of job status

- Move it out of the failed SARIF reporting so we compute the job status
whether or not we have ...

dcd1b12bebf8c791c8bf5525d96524ea8923cc41 authored 5 months ago
Merge pull request #3418 from github/mergeback/v4.31.11-to-main-19b2f06d

Mergeback v4.31.11 refs/heads/releases/v4 into main

55252c7a3a47fea1e0fdd923b269f4be8a5ad9a0 authored 5 months ago
Rebuild

7381f9750d1cf0a353c0fa189ef786f4b2b41c22 authored 5 months ago
Update changelog and version after v4.31.11

6e162a0930800b47a9211fd1ad0bb93aec5d6221 authored 5 months ago
Merge pull request #3417 from github/update-v4.31.11-1601acf88

Merge main into releases/v4

19b2f06db2b6f5108140aeb04014ef02b648f789 authored 5 months ago
Add noteworthy changes to changelog

03afde035d183ba80e8e96944c488a8e8ad91c18 authored 5 months ago
Update changelog for v4.31.11

9469107033db53628a34cb02dd6367cbb03c5761 authored 5 months ago
Merge pull request #3415 from github/henrymercer/address-telemetry-gap

Address missing telemetry at the start of Actions

1601acf88bfbe2de76e2082e68fe84478525f68e authored 5 months ago
Address review comments

fba78720cab61bc9326b24527e56282372bf34d3 authored 5 months ago
Merge pull request #3414 from github/dependabot/npm_and_yarn/lodash-4.17.23

Bump lodash from 4.17.21 to 4.17.23

a8dd5ab7a409e69ae1f5e757dc076cd837a978b9 authored 5 months ago
Omit error from start-proxy Action

28bfb7b7b5f8d7bf79201f61ac2996b0520e94a1 authored 5 months ago
Throw if in test mode

91f34600061a8983d393b3104c28084fbadcb130 authored 5 months ago
Differentiate unhandled errors in telemetry

edebb7861e8219e81797292963b8dfe2e441587e authored 5 months ago
Use `getErrorMessage` in more places

529c266223a58cd393dfc219b43361393a51887f authored 5 months ago
Rename to "unhandled"

6bd84b6a824e0bd20428e8d4cba001000a9ed83f authored 5 months ago
Merge pull request #3410 from github/dependabot/npm_and_yarn/tar-7.5.6

Bump tar from 7.4.3 to 7.5.6

5e98e18a178e77b679ddf9a251beb8e3e9b232bf authored 5 months ago
Add catch-all error reporting for errors that slip through `run`

229e0cd749ce78f208cfaa2ce84d68ada1fd01ff authored 5 months ago
Add reminder to minimise code outside try/catch

14bd76753f44c321e098d5a23bdc887ab0e9ea2c authored 5 months ago
Move config saving within try-catch

b715292b74971afcf67e1c903251b820ce5473b3 authored 5 months ago
Expand try-catch to cover more of Actions

7c72e12ecbeb0baf4ce415fd244e36d907037ce0 authored 5 months ago
Bump lodash from 4.17.21 to 4.17.23

Bumps [lodash](https://github.com/lodash/lodash) from 4.17.21 to 4.17.23.
- [Release notes](http...

b5bb69ad4bf7925b061fdcbce1cf760def03312c authored 5 months ago
Merge pull request #3318 from github/mbg/ignore-generated

1c4c0b36be82b11c8adb51fb38f7122d0debe048 authored 5 months ago
Add empty lines to test cases

bc75091173c1dced2d53975001defd2999299a00 authored 5 months ago
Trim whitespace/remove empty lines

dc2428c879fe25e44d4ebe5dbcbf41a4bd6a8a73 authored 5 months ago
Add telemetry diagnostic

cb2dd2ed293524e8b40fa657057dcf78c6ebd150 authored 5 months ago
Use `joinAtMost` for log message

9e2fa7419d53e8dae81338d04c38bf8bb889242e authored 5 months ago
Add `joinAtMost` utility function

6a02be43ee4b9eb6eadc831e00b72e57f26bf166 authored 5 months ago
Bump tar from 7.4.3 to 7.5.6

Bumps [tar](https://github.com/isaacs/node-tar) from 7.4.3 to 7.5.6.
- [Release notes](https://g...

e19f95e73f2c4753561db191df7c7557dd97d31a authored 5 months ago
Merge pull request #3405 from github/mbg/ci/fix-concurrency-ignores-inputs

Improve `concurrency` settings for PR checks

4325937dc659d7ab600bac0b81e921ed14e46e9b authored 5 months ago
Inline `EnvVar.ANALYSIS_KEY` in `getAnalysisKey`

d5b3d42fd4283f36b2f23cd91092c0dd59a49978 authored 5 months ago
Merge branch 'main' into mbg/ignore-generated

417a8c21765a2e24a2d7d1dd5707e06cf25f16e8 authored 5 months ago
Update new CCR workflow

fa03060d6048008265297fccc8330a44e93d467d authored 5 months ago
Improve comment for `concurrency` settings

f58cb3d53e554f3015e48db70b910b8ec749e63d authored 5 months ago
Merge branch 'main' into mbg/ci/fix-concurrency-ignores-inputs

51975ff7b7479f673869fbf49d7fa64b230e8485 authored 5 months ago
Merge pull request #3403 from github/henrymercer/abridge-release-notes

Abridge release notes

32d41f36fe7c3d2125b2ef434749e8f445ec42cf authored 5 months ago
Merge pull request #3409 from github/mbg/start-proxy/make-unique-artifact

Ensure that proxy log artifacts have unique names

d60bbdfd70c8b53944512ef46e541e1ff321118d authored 5 months ago
Merge pull request #3404 from github/henrymercer/include-oids-in-bundle

Include base database OIDs when bundling database

93a99bf571e9fcbcd6ba561a091a0639dd3463f4 authored 5 months ago
Merge pull request #3408 from github/mbg/add-ccr-check

Add basic PR check with CCR-like environment

dce83e1c1e8dede84dd524cd48a616e5bcac4ba6 authored 5 months ago
Just link the release notes

ec4eda1b42a7bd94555787b6efc07975d692d5fc authored 5 months ago
Include expected suffixes in test

1df1c9f85d02cb0f916a36c67eb5d267590fd71e authored 5 months ago
Check that `matrixObject` is an object

9483bd5a7f06c2052f14956d210101a0632de383 authored 5 months ago
Improve comment

b880a1a7bd603ef1fc31a785fbae83130217e510 authored 5 months ago
Rename argument

5ac04769eb36a87756ab2ef2f8c8a416c99fb112 authored 5 months ago
Change log message to warning

1ac62705ed88e2025d9aaef131e0997f0897fd70 authored 5 months ago