A web application to visualize and manage open source project data from the Ecosyste.ms API.

github.com/github/codeql-action

Actions for running CodeQL analysis
https://github.com/github/codeql-action

https://github.com/github/codeql-action/pull/3975

opened this pull request 3 days ago
Bump the actions-minor group across 1 directory with 3 updates

Bumps the actions-minor group with 3 updates in the /.github/workflows directory: [actions/setup-...

dependabot[bot] opened this pull request 4 days ago
fix: reduce redundant git-call-failed log messages in upload-sarif

mvanhorn opened this pull request 16 days ago
Bump esbuild from 0.28.0 to 0.28.1

dependabot[bot] opened this pull request 16 days ago
Bump the npm-minor group across 1 directory with 4 updates

dependabot[bot] opened this pull request 18 days ago
Update supported GitHub Enterprise Server versions

github-actions[bot] opened this pull request 19 days ago
Fix broken log grouping due to nested log group

henrymercer opened this pull request 23 days ago
Clean up `codeql.resolveLanguages`

henrymercer opened this pull request 23 days ago
Use local `upload-sarif` Action in PR checks job

henrymercer opened this pull request 24 days ago
Merge releases/v4 into releases/v3

github-actions[bot] opened this pull request 24 days ago
Mergeback v4.36.2 refs/heads/releases/v4 into main

github-actions[bot] opened this pull request 24 days ago
Cache CLI extractor paths across Actions steps

mario-campos opened this pull request 24 days ago
Merge main into releases/v4

github-actions[bot] opened this pull request 24 days ago
Update default bundle to 2.25.6

github-actions[bot] opened this pull request 24 days ago
Bump the npm-minor group across 1 directory with 2 updates

dependabot[bot] opened this pull request 25 days ago
Pin first-party Actions to SHAs

henrymercer opened this pull request 25 days ago
BNB

granadoscervantescervantesb-lab opened this issue 26 days ago
Cache CLI version information across Actions steps

henrymercer opened this pull request 26 days ago
Merge releases/v4 into releases/v3

github-actions[bot] opened this pull request 26 days ago
Mergeback v4.36.1 refs/heads/releases/v4 into main

github-actions[bot] opened this pull request 26 days ago
Merge main into releases/v4

github-actions[bot] opened this pull request 26 days ago
Disable missing diff-ranges fallback when overlay enabled manually

henrymercer opened this pull request 27 days ago
Add FF to force JGit-based Git backend

henrymercer opened this pull request 27 days ago
https://github.com/github/codeql-action/pull/3934

dependabot[bot] opened this pull request about 1 month ago
https://github.com/github/codeql-action/pull/3936

opened this pull request about 1 month ago
Fix ghs_ token patterns to support new token format

hpsin opened this pull request about 1 month ago
Do not use `core.exportVariable` in unit tests

mbg opened this pull request about 1 month ago
Bump archiver from 7.0.1 to 8.0.0

dependabot[bot] opened this pull request about 1 month ago
Bump the npm-minor group across 1 directory with 6 updates

dependabot[bot] opened this pull request about 1 month ago
CodeQL fails to detect rust/insecure-cookie in Rust code

fabasoad opened this issue about 1 month ago
Update scripts to read tokens more securely

henrymercer opened this pull request about 1 month ago
Bump sinon from 21.1.2 to 22.0.0

dependabot[bot] opened this pull request about 2 months ago
Bump minimum CodeQL CLI version to 2.19.4

henrymercer opened this pull request about 2 months ago
Add support for SHA-256 Git object IDs

henrymercer opened this pull request about 2 months ago
Support SHA-256 Git object hashes (64-char OIDs)

Copilot opened this pull request about 2 months ago
[WIP] Support SHA-256 Git object hashes

Copilot opened this pull request about 2 months ago
Allow Swift to be run on ubuntu runners

rzuckerm opened this issue about 2 months ago
Merge releases/v4 into releases/v3

github-actions[bot] opened this pull request about 2 months ago
Mergeback v4.35.3 refs/heads/releases/v4 into main

github-actions[bot] opened this pull request about 2 months ago
Merge main into releases/v4

github-actions[bot] opened this pull request about 2 months ago
Release link for 2.25.3 changes log shows as ` Ref is invalid`

Frulfump opened this issue about 2 months ago
Update default bundle to 2.25.3

github-actions[bot] opened this pull request about 2 months ago
Bump the npm-minor group across 1 directory with 5 updates

dependabot[bot] opened this pull request about 2 months ago
Bump @types/node from 20.19.39 to 22.19.17 in /pr-checks

dependabot[bot] opened this pull request 2 months ago
Bump @types/node from 20.19.9 to 22.19.17

dependabot[bot] opened this pull request 2 months ago
Bump eslint from 9.39.2 to 10.2.1

dependabot[bot] opened this pull request 2 months ago
Bump @ava/typescript from 6.0.0 to 7.0.0

dependabot[bot] opened this pull request 2 months ago
Bump https-proxy-agent from 7.0.6 to 8.0.0

dependabot[bot] opened this pull request 2 months ago
Bump the npm-minor group across 1 directory with 3 updates

dependabot[bot] opened this pull request 2 months ago
Improve connection tests

mbg opened this pull request 2 months ago
API rate limit exceeded for installation

catenacyber opened this issue 2 months ago
https://github.com/github/codeql-action/pull/3847

opened this pull request 2 months ago
https://github.com/github/codeql-action/pull/3848

opened this pull request 2 months ago
https://github.com/github/codeql-action/pull/3835

opened this pull request 2 months ago
Update supported GitHub Enterprise Server versions

github-actions[bot] opened this pull request 2 months ago
https://github.com/github/codeql-action/pull/3831

dependabot[bot] opened this pull request 2 months ago
Bump @actions/io from 2.0.0 to 3.0.2

Bumps [@actions/io](https://github.com/actions/toolkit/tree/HEAD/packages/io) from 2.0.0 to 3.0.2...

dependabot[bot] opened this pull request 2 months ago
Bump @actions/http-client from 3.0.2 to 4.0.0

Bumps [@actions/http-client](https://github.com/actions/toolkit/tree/HEAD/packages/http-client) f...

dependabot[bot] opened this pull request 2 months ago
https://github.com/github/codeql-action/pull/3818

dependabot[bot] opened this pull request 3 months ago
https://github.com/github/codeql-action/pull/3813

dependabot[bot] opened this pull request 3 months ago
https://github.com/github/codeql-action/pull/3812

dependabot[bot] opened this pull request 3 months ago
Bump @actions/exec from 2.0.0 to 3.0.0

Bumps [@actions/exec](https://github.com/actions/toolkit/tree/HEAD/packages/exec) from 2.0.0 to 3...

dependabot[bot] opened this pull request 3 months ago
Bump @actions/artifact from 5.0.3 to 6.2.1

Bumps [@actions/artifact](https://github.com/actions/toolkit/tree/HEAD/packages/artifact) from 5....

dependabot[bot] opened this pull request 3 months ago
https://github.com/github/codeql-action/pull/3803

opened this pull request 3 months ago
https://github.com/github/codeql-action/pull/3802

opened this pull request 3 months ago
Mark Swift incompatible OS as configuration error

henrymercer opened this pull request 3 months ago
Upgrade to TypeScript 6

henrymercer opened this pull request 3 months ago
Add tests for getCredentials with multiple goproxy_servers and maven_…

mario-campos opened this pull request 3 months ago
Deprecate TRAP cache cleanup

henrymercer opened this pull request 3 months ago
Python: Disable standard library extraction on GHES

henrymercer opened this pull request 3 months ago
Kotlin 2.3.20 not supported

Zordid opened this issue 3 months ago
Extend start-proxy.yml to test multiple registry support

mario-campos opened this pull request 3 months ago
Fall back to non-overlay analysis when diff-informed analysis is unavailable

sam-robson opened this pull request 3 months ago
Overlay: Only require Git 2.36.0 for repos that contain submodules

henrymercer opened this pull request 3 months ago
Check code coverage in CI

mbg opened this pull request 3 months ago
Generate and analyse esbuild bundle metadata

mbg opened this pull request 3 months ago
https://github.com/github/codeql-action/pull/3587

dependabot[bot] opened this pull request 3 months ago
https://github.com/github/codeql-action/pull/3581

opened this pull request 3 months ago
https://github.com/github/codeql-action/pull/3580

opened this pull request 3 months ago
https://github.com/github/codeql-action/pull/3567

opened this pull request 4 months ago
https://github.com/github/codeql-action/pull/3545

dependabot[bot] opened this pull request 4 months ago
Bump the npm-minor group with 2 updates

Bumps the npm-minor group with 2 updates: [eslint-plugin-jsdoc](https://github.com/gajus/eslint-p...

dependabot[bot] opened this pull request 4 months ago
https://github.com/github/codeql-action/pull/3520

dependabot[bot] opened this pull request 4 months ago
Bump minimatch from 3.1.3 to 3.1.5

Bumps [minimatch](https://github.com/isaacs/minimatch) from 3.1.3 to 3.1.5.
<details>
<summary>Co...

dependabot[bot] opened this pull request 4 months ago
Bump minimatch from 3.1.2 to 3.1.4

Bumps [minimatch](https://github.com/isaacs/minimatch) from 3.1.2 to 3.1.4.
<details>
<summary>Co...

dependabot[bot] opened this pull request 4 months ago
https://github.com/github/codeql-action/pull/3509

dependabot[bot] opened this pull request 4 months ago
Update default bundle to 2.24.2

github-actions[bot] opened this pull request 4 months ago
Use new feature flag for repository properties

henrymercer opened this pull request 4 months ago
https://github.com/github/codeql-action/pull/3489

opened this pull request 4 months ago
https://github.com/github/codeql-action/pull/3491

dependabot[bot] opened this pull request 4 months ago
Bump eslint from 8.57.1 to 10.0.0

Bumps [eslint](https://github.com/eslint/eslint) from 8.57.1 to 10.0.0.
<details>
<summary>Releas...

dependabot[bot] opened this pull request 4 months ago
https://github.com/github/codeql-action/pull/3472

opened this pull request 5 months ago
https://github.com/github/codeql-action/pull/3467

opened this pull request 5 months ago
Bump @actions/core from 2.0.3 to 3.0.0

Bumps [@actions/core](https://github.com/actions/toolkit/tree/HEAD/packages/core) from 2.0.3 to 3...

dependabot[bot] opened this pull request 5 months ago
Bump nock from 14.0.10 to 15.0.0

Bumps [nock](https://github.com/nock/nock) from 14.0.10 to 15.0.0.
<details>
<summary>Release not...

dependabot[bot] opened this pull request 5 months ago
https://github.com/github/codeql-action/pull/3457

dependabot[bot] opened this pull request 5 months ago
https://github.com/github/codeql-action/pull/3455

dependabot[bot] opened this pull request 5 months ago