A web application to visualize and manage open source project data from the Ecosyste.ms API.

github.com/github/codeql-action

Actions for running CodeQL analysis
https://github.com/github/codeql-action

Report bundled DB size in error if known

67e683bd1bac75cd7daaf4ef85a1acdf0e76ccc1 authored 6 months ago
Require tools feature for uploading overlay DBs

cb26a026e5f89d3f2af966808f49b0da9e32a721 authored 6 months ago
Extract zstd files too

ac6c41b91066beef2c2e1011da9311544e826d67 authored 6 months ago
Update `makeTelemetryDiagnostic` doc

056581e05b688858f2775ab9387e6b62616a09b1 authored 6 months ago
Remove unnecessary stub restores

9c5588d006ff90f1e1046f4949a25a446ac91b58 authored 6 months ago
Move git version logging to config utils

3765106c903a4fb1dd28cd5988cb8227d725a1e7 authored 6 months ago
Remove caching mechanism

e052dbd57de3f950b01b1bb9bc13864a6cb710bc authored 6 months ago
Run testing Action using Node 24

7673a2de65cde0ca07e36061ddba8f452e80de17 authored 6 months ago
Merge branch 'main' into copilot/update-overlay-git-version-check

32795b3c5291a5aaa11da35795e923a2bd3abdb5 authored 6 months ago
Skip slow test on Windows

6b5763e5ee51a36cac373c7cb9a4f20de18a96cc authored 6 months ago
Bump timeout on Windows

33224910227f662b4818ac08b9b2aaa8a20daad7 authored 6 months ago
Merge branch 'main' into henrymercer/scan-debug-artifacts

6bc621748705f75bba1d261a40259bc46cade02b authored 6 months ago
Verify using post step

faf6d35e7bd105fae4fbfefb391972ff2cc8d73e authored 6 months ago
Avoid logging each extract call

3b94cfeb152a4907ae48ea3e1fb217dfa806faee authored 6 months ago
Merge pull request #3359 from github/dependabot/npm_and_yarn/npm-minor-b2e0062778

Bump the npm-minor group with 3 updates

b88acb2f6ca24bca6c428d6370a8838384be27c9 authored 6 months ago
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-b2e0062778

241948c6987d1f486ee3d4059be589b7be0f7ec3 authored 6 months ago
Suppress debug logs for artifact scanner test

da77f9f63844458f85d8ec799882e334ec7639f0 authored 6 months ago
Slim down test debug artifacts

de172624a19bac02a53a919efb27b53417bca5cf authored 6 months ago
Add regression test for artifact scanner

488c1f1959777851dbf97da75dca63a1c370f4b8 authored 6 months ago
Ensure .gz files are extracted too

f2ccf3b4f18ef30c80f012c6e52391d611bae66f authored 6 months ago
Use artifact scanner in debug artifacts PR checks

f28848a66a120d77dfd94447bb946532d876a06e authored 6 months ago
Add artifact scanner

0c8bfeaf84aefab97f0cd606ff9a294ed57ee9b9 authored 6 months ago
Add simple artifact scanner for tests only

5459b98ca041d9542e6bf312cd9f6127762543fe authored 6 months ago
Merge pull request #3368 from github/copilot/bump-actions-npm-packages

Bump @actions/* npm packages to latest versions

1fe89fe9cbd29f895e60dc674c4f258f9d993a19 authored 6 months ago
Merge pull request #3372 from github/mergeback/v4.31.9-to-main-5d4e8d1a

Mergeback v4.31.9 refs/heads/releases/v4 into main

6dba00881c9b84392aa9a1ea5ad1bf3615699196 authored 7 months ago
Rebuild

d4d47c0d3df05488c590636309b15204f618e355 authored 7 months ago
Update changelog and version after v4.31.9

6c6e8109107734c204d56f7e98760619a42d670c authored 7 months ago
Merge pull request #3371 from github/update-v4.31.9-998798e34

Merge main into releases/v4

5d4e8d1aca955e8d8589aabd499c5cae939e33c7 authored 7 months ago
Update changelog for v4.31.9

1dc115f17a8c6966e94a6477313dd3df6319bc83 authored 7 months ago
Merge pull request #3352 from github/nickrolfe/jar-min-ff-cleanup

Clean up `JavaMinimizeDependencyJars` feature flag

998798e34d79baddb1566c60bbb8f68a901c04e6 authored 7 months ago
Refactor existing telemetry diagnostics to use makeTelemetryDiagnostic

Refactored bundle-download-telemetry and zstd-availability diagnostics
in init-action.ts to use ...

393c0749651f9ef1cde5357d3a087e1544009bfe authored 7 months ago
Address feedback: cache git version, improve error handling, add telemetry

- Cache the git version to avoid recomputing on repeated calls
- Refactor getGitVersion to getGi...

c3dc529aef20e50d2567365bf3bec42ca2e5a3d9 authored 7 months ago
Address code review feedback

- Add test for Windows-style git version format
- Add comment clarifying regex extracts major.mi...

fc2bbb041e8c9a10058b7370807cf2b8fdf76025 authored 7 months ago
Add git version check for overlay analysis enablement

Overlay analysis depends on `getFileOidsUnderPath`, which uses
`git ls-files --format` option th...

89753aa84b611d1d9de7c7b583c29690cb68a4d9 authored 7 months ago
Merge pull request #3358 from github/henrymercer/database-upload-telemetry

Add status report for uploading databases to API

5eb751966fe18977cdefa4e41e0f90e92801ce90 authored 7 months ago
Initial plan

aff7998c4abcf0bd314d082d7ae594bfdbfc8c7c authored 7 months ago
Merge branch 'main' into henrymercer/database-upload-telemetry

e9626872ef3347a9c18091d60da647084c2451a6 authored 7 months ago
Extract version number to constant

d29eddb39b7c33171bb0250114b1c9e3ff8fe2bc authored 7 months ago
Rename `isOverlayBase`

19c7f96922a6269458f2cadcc23faf0ebaa1368b authored 7 months ago
Use `getErrorMessage` in log too

ae5de9a20d0468cc3818a0dc5c99e456f996d9cf authored 7 months ago
Prefer `performance.now()`

0cb86337c5111af4ff3dc7e8f9b98c479c9ea954 authored 7 months ago
Merge pull request #3351 from github/henrymercer/ghec-dr-determine-tools-version-from-ffs

Determine CodeQL version from feature flags on GHEC-DR

c07cc0d3a95a282fc5a54477464931c776d124ec authored 7 months ago
Remove changelog note

7a5748cf0d74e7ca4c6c925c1704355cd1d795ba authored 7 months ago
Bump @actions/* npm packages to latest versions

Co-authored-by: henrymercer <14129055+henrymercer@users.noreply.github.com>

db75d462482e17a3cc250ea15fec030dc07e2569 authored 7 months ago
Initial plan

a0fc644617a5357bdc674cdb0478ce5f8da25ef2 authored 7 months ago
Use full names for GitHub variants

a2ee53c0d356cef3ebc079f36a9828eb614ac581 authored 7 months ago
Merge pull request #3365 from github/dependabot/github_actions/dot-github/workflows/actions/download-artifact-7

Bump actions/download-artifact from 6 to 7 in /.github/workflows

b5e1a28b8a0979c44ee52c52c566b0ab0bae3371 authored 7 months ago
Merge branch 'main' into dependabot/github_actions/dot-github/workflows/actions/download-artifact-7

c2d4383e64548fd8baed97cd22968139081c3688 authored 7 months ago
Merge pull request #3364 from github/dependabot/github_actions/dot-github/workflows/actions-minor-8751820eb1

Bump ruby/setup-ruby from 1.269.0 to 1.270.0 in /.github/workflows in the actions-minor group ac...

d0ad1da72a4017827f685ffa9a4e77661a852633 authored 7 months ago
Merge pull request #3366 from github/dependabot/github_actions/dot-github/workflows/actions/upload-artifact-6

Bump actions/upload-artifact from 5 to 6 in /.github/workflows

07cd437640dbd0699520f0629a7782f8836ae41b authored 7 months ago
Merge pull request #3309 from github/mbg/ff/make-new-upload-default

Remove `AnalyzeUseNewUpload` FF and make its behaviour the default

a682bbe410bc39b253695fbdc306f4cec0afdf9f authored 7 months ago
Rebuild

7fd7db3f267bcd2a7defe5ffc6f223e9d730d773 authored 7 months ago
Rebuild

d6c1a791b769174c32486b028f2780d27c7aa5b7 authored 7 months ago
Bump actions/upload-artifact from 5 to 6 in /.github/workflows

Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 5 to 6.
- [Rele...

034374eb3f10ed29de5692a79ffbe5207bb9a498 authored 7 months ago
Bump actions/download-artifact from 6 to 7 in /.github/workflows

Bumps [actions/download-artifact](https://github.com/actions/download-artifact) from 6 to 7.
- [...

6dbc22c93f482cbf1147d544a8ced08d017e9ebc authored 7 months ago
Bump ruby/setup-ruby

Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-rub...

a539068a614d4522def461f9854735660972c07c authored 7 months ago
Rebuild

e1058e4d74e4bf5705c922827c25203010c6057e authored 7 months ago
Bump the npm-minor group with 3 updates

Bumps the npm-minor group with 3 updates: [@eslint/js](https://github.com/eslint/eslint/tree/HEA...

d4f39b0766a3107c557f01aab461e8be377a11cd authored 7 months ago
Merge branch 'main' into mbg/ff/make-new-upload-default

b30cb9ae2ada64dbef5832eb88aafcee28a65a9e authored 7 months ago
Merge pull request #3349 from github/dependabot/github_actions/dot-github/workflows/actions-minor-dc476f2f5b

Bump the actions-minor group across 1 directory with 2 updates

7e0b77e3a82119a2eac644853e3d5a57f566502a authored 7 months ago
Merge pull request #3348 from github/dependabot/npm_and_yarn/npm-minor-38a2a793c5

Bump the npm-minor group with 5 updates

0264b51610e7835f9fdbfa53ce2dc4d9a4244409 authored 7 months ago
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-38a2a793c5

2ac846d41e37a39ad8b454fd2cfcfa597a78e043 authored 7 months ago
Merge pull request #3356 from github/mergeback/v4.31.8-to-main-1b168cd3

Mergeback v4.31.8 refs/heads/releases/v4 into main

4b675e451b3779918647db783e324bd9fd7f3932 authored 7 months ago
Rebuild

65bad627f3d5dd4eb88f7c03948fca670543ba3f authored 7 months ago
Update changelog and version after v4.31.8

4564f5e4828c94447124ef0fdfa2e0054c68d041 authored 7 months ago
Merge pull request #3355 from github/update-v4.31.8-1b0b941e1

Merge main into releases/v4

1b168cd39490f61582a9beae412bb7057a6b2c4e authored 7 months ago
Populate database upload results telemetry

5d063dd3af0174d26fa690565f785387ceae2541 authored 7 months ago
Update changelog for v4.31.8

120f277b1613fcef1261eb850ba9b01ca444bbef authored 7 months ago
Merge pull request #3354 from github/update-bundle/codeql-bundle-v2.23.8

Update default bundle to 2.23.8

1b0b941e1fbd5cb8122c5ebdf087be9d02534840 authored 7 months ago
Return status report from `cleanupAndUploadDatabases`

8e921c3145ddd6334d70b4894c12182936eb3dbf authored 7 months ago
Add changelog note

db812c1ae639aa466b2b1f4a921f823c54371173 authored 7 months ago
Update default bundle to codeql-bundle-v2.23.8

2930dba17ac868bf1d3114f09837dbfb9619aa05 authored 7 months ago
Overlay: Bump minimum CLI version for overlay

efbc56d117307284dd7d90801bc3d76c5e79162c authored 7 months ago
Clean up JavaMinimizeDependencyJars feature flag

805b7e179070d7bbf72fc0acbbda3bde84c0e3a9 authored 7 months ago
Update PR template to include GHEC-DR

da501245d4ed799c6f771bf73b4c8c38b54e18fc authored 7 months ago
Rename GHE_DOTCOM to GHEC_DR

This more closely reflects the published naming https://docs.github.com/en/enterprise-cloud@late...

1fc7d3785dc1d1ab06fa848d631eeb834a7e1e1e authored 7 months ago
Determine CodeQL version from feature flags on GHEC-DR

7a55ffeaf1cee40b2baa35a33085c50e6d2197b5 authored 7 months ago
Merge pull request #3340 from github/kaspersv/check-for-overlayBaseSpecifier

Overlay: Check database metadata for overlayBaseSpecifier

c43362b91a940600cde2ebae39ec7a35ad66bdc0 authored 7 months ago
Overlay: log overlayBaseSpecifier at debug log-level

002a7f25fdbaa5bc68ab7b87a336015eebea0b1f authored 7 months ago
Update src/codeql.ts

Co-authored-by: Henry Mercer <henrymercer@github.com>

5b7e7fcc9c5a25e1129581e9733c0f6fb5078a71 authored 7 months ago
Rebuild

cd48547da5160f161c517fb7e0efa51163487b14 authored 7 months ago
Bump the actions-minor group across 1 directory with 2 updates

Bumps the actions-minor group with 2 updates in the /.github/workflows directory: [ruby/setup-ru...

44570be32d63ba59cdd243c9b962b0e6c8edcf8d authored 7 months ago
Rebuild

b73d396b48aa5740d9b332e7a6616d077eb0650b authored 7 months ago
Bump the npm-minor group with 5 updates

Bumps the npm-minor group with 5 updates:

| Package | From | To |
| --- | --- | --- |
| [node-f...

0ffebf72b2a4ffe087222d611677bbf6812bb016 authored 7 months ago
Merge pull request #3345 from github/mergeback/v4.31.7-to-main-cf1bb45a

Mergeback v4.31.7 refs/heads/releases/v4 into main

149d184a5153ea45e6fbcef5588ac7b8c7af9835 authored 7 months ago
Rebuild

97c2630b10bd11032a1791444ba86763b11a21e1 authored 7 months ago
Update changelog and version after v4.31.7

b93926dc35101e6ea6a689056a46b740c274ea87 authored 7 months ago
Merge pull request #3344 from github/update-v4.31.7-f5c63fadd

Merge main into releases/v4

cf1bb45a277cb3c205638b2cd5c984db1c46a412 authored 7 months ago
Update changelog for v4.31.7

f4ebe95061f10e93e9d301f51ed59c37fc67acde authored 7 months ago
Merge pull request #3343 from github/update-bundle/codeql-bundle-v2.23.7

Update default bundle to 2.23.7

f5c63fadd50734aadb36128b8fd75caabc02a3dc authored 7 months ago
Add changelog note

a2c01e776e434421d4f8cba239abb06ec9713e92 authored 7 months ago
Update default bundle to codeql-bundle-v2.23.7

ac34c1383489d3ac7641a26c5fbbf8ec5112f4fc authored 7 months ago
Merge pull request #3339 from github/dependabot/npm_and_yarn/npm-minor-77d26487b0

Bump @eslint/eslintrc from 3.3.1 to 3.3.3 in the npm-minor group

267c4672a565967e4531438f2498370de5e8a98d authored 7 months ago
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-77d26487b0

aeabef7b69ed0dc14688dbc848e5f1edaeae59f1 authored 7 months ago
Merge pull request #3341 from github/mbg/ci/update-cs-config-cli-tests

Update CLI config test to account for overlay db changes on PRs

78357d3fc9e24912713f993f791b2aef1b04bf6d authored 7 months ago
Update CLI config test to account for overlay db changes on PRs

d61a6fa793c84c98e08555552b4b9c6374665d24 authored 7 months ago
Overlay: Check database metadata for overlayBaseSpecifier

c4efbda2999d6895931c401bf16d97750bd3650e authored 7 months ago
CodeQL: Add resolveDatabase method

dd8914320f183a2820ffe1a91b9fc453164493e6 authored 7 months ago
Rebuild

ce27e95f791dfda287706648ff69d9226c4526c2 authored 7 months ago
Bump @eslint/eslintrc from 3.3.1 to 3.3.3 in the npm-minor group

Bumps the npm-minor group with 1 update: [@eslint/eslintrc](https://github.com/eslint/eslintrc)....

43224eb34e6efd92aee9cf38e9f97e15518511be authored 7 months ago