github.com/github/codeql-action
Actions for running CodeQL analysis
https://github.com/github/codeql-action
Update CONTRIBUTING.md
8f845425a2d57567cc1473d72dccb572d4a08b3a authored about 4 years agoc9882bef2d31cff1d1f734e3b95ea8e39ea99566 authored about 4 years ago
Clarify instructions for updating required checks
9a6bf18ec41de733e26e35d6d2b593be5b02b29b authored about 4 years agoAllow running packs with paths
0235de02793f0a809e3eba51855d055f928d0d09 authored about 4 years agoa73e50661714339a385025906506197dba2b84c0 authored about 4 years ago
b11fe85402d0b59954ae56364534f42dfb18ac17 authored about 4 years ago
This will allow the command to resolve packs with paths.
Also, use a more concise version of `tr`.
922dc2b9760a84dca80cd7bf4c7e139e8fdd4b6e authored about 4 years ago395afb1dd9a5c8b4250136730204dd89e8badead authored about 4 years ago
Don't wait for processing in test mode
ceeddf263846258329116eb57e36db63e530c0c7 authored about 4 years ago
In test mode, we don't upload results, so there's no point waiting for
processing.
7c2be0600620aa6873f13d25e15d913be9b80c55 authored about 4 years ago
ed0abc6cac5ef1aa3b8f254c0d09d69950d1b917 authored about 4 years ago
Prompt customers to upgrade from v1 to v2
0c3c093eba790026615e956cd84f613ffec1a567 authored about 4 years ago193cfa588d405072898ebe0125e4a362e11cf607 authored about 4 years ago
d9e30cb001c16328cc13846f7ed5906bc5caef06 authored about 4 years ago
2bf00f719d8a52ce30764c5a9d694bc19be71f7c authored about 4 years ago
02083c307ee4f8be356fe7dbb6fb17cb15d3f80e authored about 4 years ago
35ef6a2db34940be88b840f6548f213befc7ea1d authored about 4 years ago
5227afabbec3d1444d9925a15312eb6b2131e4cb authored about 4 years ago
Mergeback v2.1.9 refs/heads/releases/v2 into main
6ed7f7079817cf4b3d0248d1cfb3aa83781ddd0a authored about 4 years ago04f504ca7f369fec5580b00f812c601f00efd710 authored about 4 years ago
016ec75b7c72d217482f024a681ce8ff85bfa0ce authored about 4 years ago
Merge main into releases/v2
7502d6e991ca767d2db617bfd823a1ed925a0d59 authored about 4 years agocbce00d08d9b4b9612275f60a9a29ac09c3898b2 authored about 4 years ago
Also, this cleans up our pack-related integration tests.
We are now testing with the most recent...
Fix status reporting error on Windows
72861144fd941b2db3301e0efdf0f5308ae4f8e5 authored about 4 years ago0256599547b3f3334bfffbb53167d833be7d6a1b authored about 4 years ago
README: Replace git.io shortlink with full link
ff8b365e79b61461a28646cba047487f35109b50 authored about 4 years agoeed184a53429ced9e269d8573a842abbe4190769 authored about 4 years ago
Commit any conflicts during v1 backport to simplify release process
c76f0b5b074061aeed235104de861f41c4eb8861 authored about 4 years agogit.io is deprecated, so use the full link to docs.github.com instead.
bf4ba6945d7c065bf5ef8784b2510949aa9de685 authored about 4 years agod2d14adf3eceb6935d4c04db3ce571cf1fd45e4f authored about 4 years ago
Bump default CodeQL version to 2.9.0
95b49c3e6bca6519eddf362519816173ff07804b authored about 4 years ago80771fd2d0bd83c0980ec18f865cfbd3de6c34ae authored about 4 years ago
6dd9baf8beb3bfb519878865a62dd3a835d99ba3 authored about 4 years ago
2b8fdb3f2ea62962c4d1a43d391d4f07476c3162 authored about 4 years ago
This gives us slightly messier git history, but more importantly makes
reviewing substantially e...
Specify releases of the CodeQL Action using tags instead of branches
ce63ab5d00f7849b32669452217142d25c46bc97 authored about 4 years agoe87e2d8201b6ceb4b500891e9bb9d4f5b4a9a040 authored about 4 years ago
8a646279fc45fcb9d532079c1b8e054bd2d2ac55 authored about 4 years ago
23b7196b6bb38599ac6096111b348e2ba1c55444 authored about 4 years ago
e6e327771b98fd05cc6a83cbe30b4a6f74d5ee88 authored about 4 years ago
faf9d4b4993b2269cea4ed22753dfd2bd588084e authored about 4 years ago
Bump glob from 7.1.7 to 8.0.1
8b2f5d7158fd9decd9cfa8f75562eb788a2414ff authored about 4 years ago
This check is primarily intended to validate that any merge conflicts in
the v2 -> v1 backport P...
0ba58d8497b46df8674aa2dfa7809966e03a6467 authored about 4 years ago
Bumps [glob](https://github.com/isaacs/node-glob) from 7.1.7 to 8.0.1.
- [Release notes](https:/...
b3bf557359f79e6aa98c484e8a9ad6a782fe3a8a authored about 4 years ago
Re-enable waiting for processing by default, using the new API semantics.
c5c5bdabb9b7feb02575e29c90a216725e42166e authored about 4 years agoe7869d541b3802aedcf592d90253442bc3f5ce0c authored about 4 years ago
The process of creating the v1 release can run into merge conflicts. We
commit the unresolved co...
Prepare for renaming `v1` -> `releases/v1` and `v2` -> `releases/v2`.
9daf1de73ca769b18a8abc0ddfdfff845708cb1c authored about 4 years agobce749b10f3bd8b6b463c7753915deeac5158bba authored about 4 years ago
fce4a01cd713caf52887d7ef8fd4e262d9e4aaa3 authored about 4 years ago
bac9320f4fb6ba590f3722eb9b477576e59d42bd authored about 4 years ago
Add codeql-python as CODEOWNERS
7a12645d7e76d9d055041d9a3ba69d24410224c0 authored about 4 years agoCo-authored-by: Henry Mercer <henrymercer@github.com>
9f20addbf2ff261ac193e51efc462099a4170d8b authored about 4 years ago780f4ee1bf3ea7edd77e1d6e12c7d62b23643159 authored about 4 years ago
b9577df761383c5e12e9895519f4b65d679ce72d authored about 4 years ago
autobuild: add working-directory input
baf90d17d2dff1411edbc33429becd4afaecd4ab authored about 4 years ago6f174084dd75d5332e91c40ac2eb5eb81c01e869 authored about 4 years ago
b0c570ef831ff590914bc634a504523f320c265b authored about 4 years ago
Mergeback v2.1.8 refs/heads/v2 into main
2d80fe85fc145e25f19590a2ead113b000b8ad60 authored about 4 years ago0c80741707b63bae26172b42180684eaf22c7668 authored about 4 years ago
792bbfea04a0748d163cd0e137d32081eb0f2ddd authored about 4 years ago
Merge main into v2
1ed1437484560351c5be56cf73a48a279d116b78 authored about 4 years ago3ed22c81453325e4229fad1e98a8405e98ccc671 authored about 4 years ago
As previously written, if codeql finds a `Pipfile`, but no `Pipfile.lock`, it will run `pipenv i...
808c29257bbf41a2a3fd4fc68b76e84b38ff5424 authored about 4 years agoExclude pull requests from actions/runs request
739937f14eacbad964221a59e8cff025f3e176d3 authored about 4 years ago0ecdac49ad00f31a41e6e6925cab3a55d65d3822 authored about 4 years ago
This will save time when fetcing the current run and we
don't use the pull requests for anything...
Update default CodeQL version to 2.8.5
a0b596246a3a74f7e96bf8d2f178f9a7d0185901 authored about 4 years agoMergeback v2.1.7 refs/heads/v2 into main
b9bb8dd18d106b7d904ac49760af4eae81a6f49e authored about 4 years ago11673755ab140e9f20cbb9eb10c3b7d054f34831 authored about 4 years ago
d0ca51f5e9531103bb36abc1d150365745059168 authored about 4 years ago
Merge main into v2
0182a2c78c8a55b763909348834ed54d735ab3e2 authored about 4 years ago488f78249e555e2ae6964a1bd048323b2bb389f8 authored about 4 years ago
Revert usage of `--codescanning-config` flag
9cab82f202141e6acc25a097e565656b20c9654c authored about 4 years ago43d066495c7adc2b286b775a1858c081c85f7696 authored about 4 years ago
Fix issue with dependencies
f090899ed05d9bc6b1863b0d183bcfcdf88ff1e9 authored over 4 years ago8a00ed086de90bf51e7970dc8d73ca95fbdae4eb authored over 4 years ago
5d3e1a701c11d9aca3eef6d0fbb6ee8fd2ce7547 authored over 4 years ago
Run version `~0.2.0` of the ML-powered query pack on v2.8.4+ of the CLI
935969c6f771d9f0a35efa2ae9cf7c10d9886ca3 authored over 4 years agoe26813cf98d9a02b61afaf81d4556c964627edef authored over 4 years ago
We now limit the cardinality of the ML-powered JS queries status report
field server-side. With ...
2c03704a6c1a830d08e4d9bec16d5e11341fdfbd authored over 4 years ago
Add a PR check to validate that ML-powered queries are run correctly
a90d8bf7113ff4d559a93e924657f47182b7ff14 authored over 4 years agoUpdate major versions of Actions in README and workflows
b0ddf36abe59aeef1e1161800244ed201a198092 authored over 4 years ago1ea2f2d7f1d93eaf4eac2be602aac0c587fd74ec authored over 4 years ago
Stop running ML-powered queries on Windows
9dcc141f122e30f8d48b9927b17b081acd406b1d authored over 4 years agodc0338e4932696fa7e12853666bd55126f578ec7 authored over 4 years ago
ea751a9fae12fc5267ceb93f51622421afc5e87b authored over 4 years ago
a2949f47b3d667fc2d35d39f10089aa60cbd7071 authored over 4 years ago
7871f0d5e10d4034f6952db5d8dded222e334846 authored over 4 years ago
e6f3e049b473716c301b0092db0ef189a76f7ba6 authored over 4 years ago
e83a1d469e815f6f67cf93df1a99d05aa63e1b19 authored over 4 years ago
Avoid failure if `@types/node` is already 12.12
894faced79b44f4ddeee48597ac2e62d026ead4f authored over 4 years agoRun all PR checks on the `v2` branch
4d339ae3ecacd543366d2611b1930fbca118a754 authored over 4 years ago381ea362117487a2cabac674f7453a75e491c8fe authored over 4 years ago
e769c2dd6e27aef1299db54a3981af91addd4712 authored over 4 years ago