A web application to visualize and manage open source project data from the Ecosyste.ms API.

github.com/github/codeql-action

Actions for running CodeQL analysis
https://github.com/github/codeql-action

Merge branch 'main' into sam-robson/overlay-fallback

f8b93c30a621d45f6fa3e5afddf21234b77002cd authored about 2 months ago
Merge pull request #3865 from github/update-bundle/codeql-bundle-v2.25.3

Update default bundle to 2.25.3

8c6e48dbe051ceb3015c19554831af1b43275f46 authored about 2 months ago
fix: re-import withGroupAsync in init-action.ts after merge

80a72986d3f6ce2be83bf7b390dd5ff2279e9d44 authored about 2 months ago
test: drop codescanning-config-cli scenario for overlay without diff-informed

e9e36aec74b61c82b725ccff4dd9104df39abaaf authored about 2 months ago
Add changelog note

719098349ea5beae8aa364bf9b71ff1c8d937df2 authored about 2 months ago
Update default bundle to codeql-bundle-v2.25.3

2bb209555a024d051f6271c8a846b402497f9445 authored about 2 months ago
Merge branch 'main' into sam-robson/overlay-fallback

4ed52dcbfa7ac2ed7ba473667cadd6114d08be30 authored about 2 months ago
refactor: report missing PR diff ranges via OverlayDisabledReason and disable overlay

3cc8dd3e599aa1f990e2ca6503b89ed1fe0b8949 authored about 2 months ago
Merge pull request #3850 from github/mbg/private-registry/cloudsmith-gcp

Private registries: Add support for Cloudsmith and GCP OIDC configurations

7851e55dc3be31ec4bcc3ef98453de2cb306e698 authored about 2 months ago
Add generic non-printable chars test for OIDC configs

262a15f6cf4c7a43d6a38ad76392e5e2d4977751 authored about 2 months ago
Merge pull request #3853 from github/mbg/start-proxy/improved-checks

Improve connection tests

a6109b1c07173a53ece3d179a925ff9644d1fabd authored about 2 months ago
Merge remote-tracking branch 'origin/main' into mbg/private-registry/cloudsmith-gcp

022ff3c73f1668d39b34166317b77ea3d14d0946 authored about 2 months ago
Add changelog entry

0a4d574ac47a8f8e488be5dcbbbbf207120f7bbe authored about 2 months ago
Improve `replaces-base` validation and add tests

d1edf2e4deb7b62a55d69b57f06b7f158ce65b84 authored about 2 months ago
Merge pull request #3859 from github/dependabot/npm_and_yarn/ava/typescript-7.0.0

Bump @ava/typescript from 6.0.0 to 7.0.0

facd53f789b235d9b067313aa29a53fbc054c67e authored about 2 months ago
Fix `permutations` comment

b77983290b283ad7a760a3981c5eb9da3ba05629 authored about 2 months ago
Merge pull request #3862 from github/dependabot/github_actions/dot-github/workflows/actions-minor-933f87fbf1

Bump ruby/setup-ruby from 1.301.0 to 1.305.0 in /.github/workflows in the actions-minor group ac...

fcf29e3d866909ce809c1c2bab7e96cef4fba3b9 authored about 2 months ago
Merge branch 'main' into dependabot/npm_and_yarn/ava/typescript-7.0.0

1fed3e9ba8695db253170dedb1a035e99d59c45f authored about 2 months ago
Make it clearer what the expectations for `isUsernamePassword` are

549683cee56636703703eed41c1847ee23ee4463 authored about 2 months ago
Modify `FromSchema` so that optional properties are actually optional

7a6ed562193d7191bec9a0e1d3cd34b4cab3f10a authored about 2 months ago
Improve `validateSchema` comment

91fbc5160642c21a03107a9a66d2841d732e0ecd authored about 2 months ago
Improve typing of `cloneCredential`

35715ef8fe7f093c67aee3ea68ab814037564120 authored about 2 months ago
Fix linter error

bac7fdaf42d3deb2b785e295a1c0f84fcdf1bdfc authored about 2 months ago
Merge pull request #3837 from github/update-supported-enterprise-server-versions

Update supported GitHub Enterprise Server versions

1517969c90704e7555e929e4a3354ee132dced05 authored about 2 months ago
Rebuild

f07336045603d079c731c23865d67bcb5df643a9 authored 2 months ago
Bump ruby/setup-ruby

Bumps the actions-minor group with 1 update in the /.github/workflows directory: [ruby/setup-rub...

5145c112e77f2225fe26c100ee77650666dffbfc authored 2 months ago
Bump @ava/typescript from 6.0.0 to 7.0.0

Bumps [@ava/typescript](https://github.com/avajs/typescript) from 6.0.0 to 7.0.0.
- [Release not...

7108503ac659db0ddde389e97e88188731e181dc authored 2 months ago
Merge pull request #3856 from github/henrymercer/overlay-add-log-group

Add log group for downloading overlay-base DB

4fe9b1e2431d87d017aecc6455224c396b40c9a1 authored 2 months ago
Add log group for downloading overlay-base DB

56733fb5ae9b8f71546e1785beafb3fedc08f933 authored 2 months ago
Deprecate CodeQL versions 2.19.3 and earlier

97be3af35ac37441d1b6361481ce99f353df02c2 authored 2 months ago
Add GHES 3.21 to supported versions table

0a636086c932e088ee3a3cbfc20fc728a58d5bd6 authored 2 months ago
Log disclaimer about connection tests, with link to docs

7a818e69771a11e3c5263c3824ac9b3f67f576d3 authored 2 months ago
Merge pull request #3852 from github/henrymercer/avoid-diagnostic-collisions

Add random suffix when writing diagnostics to avoid filename collisions

7c5585e5cf078a7726d40d2fbea3e00a7e109faf authored 2 months ago
Use a counter instead of Math.random for diagnostic filename suffix

245f6828c4b868031d4f50d96c64c536f031e265 authored 2 months ago
Add changelog note

c109008fac92e5836f4c5914b9e93744216d279d authored 2 months ago
Defensively sanitize timestamp

e73c940c9bfd79008a4b792d6fb46a19273cb59a authored 2 months ago
Add random suffix when writing diagnostics to avoid filename collisions

cdb655d6d4cbc2686e6e01bc971017d495693931 authored 2 months ago
Use `/v3/index.json` for NuGet feed check

30e0f4391d8c181f5d82c2b34c870a0f13849cb0 authored 2 months ago
Switch from `HEAD` to `GET` requests

Not all registry implementations support `HEAD` correctly.

6153577cab8ae004826c39e9fb251835b5dc93e1 authored 2 months ago
Update from main and Rebuild

8f02cfa11d4ef610fcb6c39abbcb3539059dea92 authored 2 months ago
Ignore test files

0ed734b61b913e13c91e6dfe8bdb25eae59c2152 authored 2 months ago
Accept `replaces-base` option

efdcb31f11520a0f75acffe6ab513bc602f26e8c authored 2 months ago
Validate GCP OIDC configurations

4d2c7c6e1052d01b903f8c448040cca75475cb70 authored 2 months ago
Validate Cloudsmith OIDC configurations

70b2658d233375ecac06a6d4b53c197a2100688b authored 2 months ago
Group OIDC schemas into an array

530fcb3bbf6b4ec77dc7c4e7cd1ebcdeaef33be1 authored 2 months ago
Add tests for `getAuthConfig`

2acf81942be0e7e23680c9ea047cc9dc9154cc30 authored 2 months ago
Add schemas for basic credential types

d2a54a45078101ba95470d15db11ab2e19d6e287 authored 2 months ago
Simplify credential cloning in `getAuthConfig`

bc4097bbe1e9ec5b32dd49b7267b4fed21fab02e authored 2 months ago
Move `getAuthConfig` out of `start-proxy.ts`

c8e26e209a72378c5f0d0c0baff9ed657148b087 authored 2 months ago
Use schema/validation for existing OIDC config types

0752451507238defe854c2172d7cc02170c52f46 authored 2 months ago
Add simple JSON schema / validation helpers

243c274daf79e2158519c66f93640001e92c4699 authored 2 months ago
Merge branch 'main' into sam-robson/overlay-fallback

5ded561dcdede63cb3749eed86835decbb61b3a2 authored 2 months ago
Merge pull request #3849 from github/henrymercer/simplify-diff-range-interface

Simplify `writeDiffRangeDataExtensionPack` interface

19b3a84f58f551a99396341585444cb37be03324 authored 2 months ago
Simplify `writeDiffRangeDataExtensionPack` interface

858a6149c124d6e03ab86f86703138b302f3305a authored 2 months ago
refactor: address review feedback on overlay fallback

faca00d3ae695055022b37bf815026674834922c authored 2 months ago
Merge pull request #3848 from github/dependabot/npm_and_yarn/fast-xml-parser-5.7.1

Bump fast-xml-parser from 5.5.7 to 5.7.1

c60c75576d42956f25a2dae723f11eae3ee4ee09 authored 2 months ago
Merge pull request #3847 from github/dependabot/npm_and_yarn/uuid-14.0.0

Bump uuid from 13.0.0 to 14.0.0

59aede21136338625d3ea89253c31ecc6cc3bd47 authored 2 months ago
Rebuild

6c35f8607be2dbf772993b72228cbaa77b728940 authored 2 months ago
Rebuild

c486cacf49ea9274b6f835fa92a853e04883e359 authored 2 months ago
Bump fast-xml-parser from 5.5.7 to 5.7.1

Bumps [fast-xml-parser](https://github.com/NaturalIntelligence/fast-xml-parser) from 5.5.7 to 5....

365478cc5baba511598f1f8051c3b3ad1a64ed54 authored 2 months ago
Bump uuid from 13.0.0 to 14.0.0

Bumps [uuid](https://github.com/uuidjs/uuid) from 13.0.0 to 14.0.0.
- [Release notes](https://gi...

f0e64907568a50981798ad7422a26890825e1e03 authored 2 months ago
Merge pull request #3840 from github/dependabot/npm_and_yarn/npm-minor-580efa6e3b

Bump the npm-minor group across 1 directory with 3 updates

860353f245297440d09cbbe082bc3d6be2bc6605 authored 2 months ago
Merge pull request #3835 from github/dependabot/npm_and_yarn/eslint-import-resolver-typescript-4.4.4

Bump eslint-import-resolver-typescript from 3.8.7 to 4.4.4

4fb8483ef09c26327dceb7bb4298eae44a60f0b7 authored 2 months ago
Bump the npm-minor group across 1 directory with 3 updates

Bumps the npm-minor group with 3 updates in the / directory: [globals](https://github.com/sindre...

c2574efbeeafeac3bf632137fb9c63adb3d8eccc authored 2 months ago
Merge pull request #3839 from github/henrymercer/workflow-run-triggers

Escape "+"s in `on.workflow_run.workflows`

4cbe7bef850a2b9688db7dbe6133a045b3627fcd authored 2 months ago
Escape "+"s in `on.workflow_run.workflows`

f6a5638305c417ff6390ca85dfa2a68722d841ab authored 2 months ago
Mitigate caches being evicted before they can be downloaded

1279e8d41c608bda4cf183c22c4860d3bfb99cb5 authored 2 months ago
Use type-only imports

af1f6139899520107f44b3291c7a27eea1ac58a5 authored 2 months ago
Document exclusion of nightlies

5026833be54c0331f9e629b7655471b75643ce5a authored 2 months ago
Retrieve CodeQL versions associated with cached overlay base DBs

201ddc275d16727fbe5b9978a42a88879e689476 authored 2 months ago
Merge pull request #3830 from github/henrymercer/deflake

Add workflow to rerun potentially transient failures

1dcdb940d513da9c73c6de817f8f40c75934d14d authored 2 months ago
Update supported GitHub Enterprise Server versions

de303a9db5f6c95afba6ef555829f5e6f14599d6 authored 2 months ago
refactor: fall back to non-overlay analysis when diff-informed analysis is unavailable

5d1c58464f144f93a9311960c4957c659cfc2070 authored 2 months ago
Merge pull request #3831 from github/dependabot/npm_and_yarn/npm-minor-f46f1f14d7

Bump the npm-minor group across 1 directory with 2 updates

0b7b740d4cd9b44f80c907b666497564df09d1d9 authored 2 months ago
Merge branch 'main' into dependabot/npm_and_yarn/npm-minor-f46f1f14d7

0ac85966ba0beede92a53eab3f23c074f41c60c6 authored 2 months ago
Bump eslint-import-resolver-typescript from 3.8.7 to 4.4.4

Bumps [eslint-import-resolver-typescript](https://github.com/import-js/eslint-import-resolver-ty...

5019ed041cdb90473c9eee870c4e019813dd5551 authored 2 months ago
Bump the npm-minor group across 1 directory with 2 updates

Bumps the npm-minor group with 2 updates in the / directory: [@eslint/compat](https://github.com...

d64d81d41f0fc8a15142d89c747a21e45973b315 authored 2 months ago
Merge pull request #3811 from github/henrymercer/record-all-builtin-languages

Store all built-in languages

6777c894e961d2f153d1ba129f67f775f81e39a1 authored 2 months ago
Merge remote-tracking branch 'origin/main' into henrymercer/record-all-builtin-languages

# Conflicts:
# lib/start-proxy-action.js
# src/known-language-aliases.json

79f9c0517cd40e047ba707c8f594ba5273d9b1c4 authored 2 months ago
Rename job

Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>

3b3a77544b5c4ad5ee7e853fb0eafa5a90a6aa89 authored 2 months ago
Add workflow to rerun potentially transient failures

9f95de42d623397f05c448509401b1389363e35c authored 2 months ago
Merge pull request #3827 from github/dependabot/npm_and_yarn/follow-redirects-1.16.0

Bump follow-redirects from 1.15.11 to 1.16.0

e2d518d895500ba952d35626431966a9a11a7a49 authored 2 months ago
Rebuild

9df9e9176ee02f21e9f2fd24f95a002d6e567c79 authored 2 months ago
Bump follow-redirects from 1.15.11 to 1.16.0

Bumps [follow-redirects](https://github.com/follow-redirects/follow-redirects) from 1.15.11 to 1...

6847a42aa80a40e029ee97718f520c0259795d6c authored 2 months ago
Merge pull request #3825 from github/mergeback/v4.35.2-to-main-95e58e9a

Mergeback v4.35.2 refs/heads/releases/v4 into main

f820c80d4dff3b5f55760da054a96c61839f1963 authored 2 months ago
Rebuild

ca7d6d3b79a084b53c433f7bc70f42daae20646b authored 2 months ago
Update changelog and version after v4.35.2

8d9c36a0ce8211a12f778639efaaa135892cf60a authored 2 months ago
Merge pull request #3824 from github/update-v4.35.2-d2e135a73

Merge main into releases/v4

95e58e9a2cdfd71adc6e0353d5c52f41a045d225 authored 2 months ago
Update changelog for v4.35.2

6f31bfe060e817d81e938dbec767969d20031e25 authored 2 months ago
Merge pull request #3823 from github/update-bundle/codeql-bundle-v2.25.2

Update default bundle to 2.25.2

d2e135a73a39154e3a231aeb49163c4661c5b8b1 authored 2 months ago
Add changelog note

60abb65df09fcf213c398e064c8a80db1f15cdaf authored 2 months ago
Update default bundle to codeql-bundle-v2.25.2

5a0a562209255e956ad8aafcee303294e64eefa2 authored 2 months ago
Include experimental languages

f8b62132ab54098ded433e8efdd5342859672be8 authored 3 months ago
Merge pull request #3820 from github/dependabot/github_actions/dot-github/workflows/actions-minor-cc17fecf2b

Bump the actions-minor group across 1 directory with 2 updates

65216971a11ded447a6b76263d5a144519e5eee1 authored 3 months ago
Merge pull request #3821 from github/dependabot/npm_and_yarn/npm-minor-345b938e93

Bump the npm-minor group across 1 directory with 6 updates

3c45af2dd258e1623af1898da5c86545b514e028 authored 3 months ago
Rebuild

f1c339364c12f922998186ed897e45e3b4ae8874 authored 3 months ago
Rebuild

1024fc496c87e944a93e98d8cf2c09e2c7602a30 authored 3 months ago
Bump the npm-minor group across 1 directory with 6 updates

Bumps the npm-minor group with 6 updates in the / directory:

| Package | From | To |
| --- | --...

9dd4cfed96030ccdfe1af4daf7a7964322704fed authored 3 months ago
Bump the actions-minor group across 1 directory with 2 updates

Bumps the actions-minor group with 2 updates in the /.github/workflows directory: [ruby/setup-ru...

c1403f094c9dbb52c4591313cbd4c71db789e05f authored 3 months ago
Merge branch 'main' into henrymercer/record-all-builtin-languages

90d7616015a402a4c1fc77cca565e36ce368192e authored 3 months ago