Commits
Commits on May 17, 2021
-
Add configuration option to set CodeQL DB location
Edoardo Pirovano authored and Edoardo Pirovano committedMay 17, 2021 Copy the full SHA 79c79f1View commit details -
Update CodeQL bundle to 20210517 / 2.5.5
Henning Makholm committedMay 17, 2021 Copy the full SHA 95f5a25View commit details
Commits on May 14, 2021
-
Add warnings about CLI hack to codeql.ts
These warnings refer to a hack that was added to the CLI in https://github.com/github/semmle-code/pull/39335 They can be removed again once the CLI has a more principled way for the CLI to recognize that it's being invoked by the runner/action.
Henning Makholm committedMay 14, 2021 Copy the full SHA e7d4215View commit details
Commits on May 13, 2021
-
Change include path for lines of code counting
Previously, we were always using `**` in the include path. the effect of this was to always count lines in the entire repository unless explicitly added to the paths-ignore. This was incorrect behaviour. Now we only using `**` if the include path is otherwise empty.
Andrew Eisenberg committedMay 13, 2021 Copy the full SHA 8e61fc2View commit details -
Use the prefix id for keying into metrics rules
Fixes a bug where we were looking for incorrect keys for metrics rules. Previously, we were using full language names in the keys. Now, we use the short language names in the metric ids. This is done through a simplification of the code. Also, this change does two smaller things: 1. Prints out the baseline count to the logs 2. Adds the `assertNever` function to ensure we never miss a case in a switch statement. This function is borrowed from vscode-codeql.
Andrew Eisenberg committedMay 13, 2021 Copy the full SHA e8b2a98View commit details
Commits on May 10, 2021
-
Output environment file for Windows
Edoardo Pirovano committedMay 10, 2021 Copy the full SHA a5506d8View commit details -
Merge branch 'main' into daverlo/categoryInput
David Verdeguer committedMay 10, 2021 Copy the full SHA ea18d47View commit details
Commits on May 7, 2021
-
We were inadvertently using codeql language ids instead of the action's language ids. There is now a 3-way mapping between the ids used by the lines counter library, the action, and codeql.
Andrew Eisenberg committedMay 7, 2021 Copy the full SHA b6ae33fView commit details
Commits on May 6, 2021
-
Merge branch 'main' into hmakholm/pr/fix-escaping
Henning Makholm authored and GitHub committedMay 6, 2021 Copy the full SHA ad98dc6View commit details -
Robert committed
May 6, 2021 Copy the full SHA 031dc50View commit details -
Merge branch 'main' into hmakholm/pr/fix-escaping
Henning Makholm authored and GitHub committedMay 6, 2021 Copy the full SHA ee062d3View commit details
Commits on May 5, 2021
-
Avoid fingerprinting directories
Andrew Eisenberg committedMay 5, 2021 Copy the full SHA f584f94View commit details -
Merge branch 'main' into hmakholm/pr/fix-escaping
Andrew Eisenberg authored and GitHub committedMay 5, 2021 Copy the full SHA b477190View commit details -
Co-authored-by: Andrew Eisenberg <aeisenberg@github.com>
Henning Makholm and Andrew Eisenberg committedMay 5, 2021 Copy the full SHA a6ebb19View commit details -
fix value escaping in codeql-env.sh
Henning Makholm committedMay 5, 2021 Copy the full SHA e7e64d5View commit details -
Merge branch 'main' into aeisenberg/warning-message
Henry Mercer authored and GitHub committedMay 5, 2021 Copy the full SHA c2ec5a2View commit details -
Log each query as it's interpreted when calling codeql database analyze
Henry Mercer committedMay 5, 2021 Copy the full SHA 2c0a857View commit details -
Clarify the missing baseline lines of code warning message
Andrew Eisenberg committedMay 5, 2021 Copy the full SHA e04c62bView commit details -
David Verdeguer committed
May 5, 2021 Copy the full SHA 0c0bc0eView commit details -
Merge branch 'main' into daverlo/categoryInput
David Verdeguer committedMay 5, 2021 Copy the full SHA a117668View commit details -
David Verdeguer committed
May 5, 2021 Copy the full SHA cd7eeddView commit details
Commits on May 4, 2021
-
The SARIF that we are interpreting has moved away from using `metric` to the more general term, `rule`. We need to adapt our baseline lines of code counting to use `rule` as well.
Andrew Eisenberg committedMay 4, 2021 Copy the full SHA a2312a0View commit details
Commits on May 3, 2021
-
Update CodeQL bundle to 20210503 / 2.5.4
Aditya Sharad committedMay 3, 2021 Copy the full SHA c3e98fbView commit details -
Use the category on the runner
David Verdeguer committedMay 3, 2021 Copy the full SHA aa53f64View commit details -
Use actionsUtil.computeAutomationID on upload-lib
David Verdeguer committedMay 3, 2021 Copy the full SHA 3b741b3View commit details -
Forward category input to codeql cli
David Verdeguer committedMay 3, 2021 Copy the full SHA c93cbc9View commit details -
Add actions-util.getAutomationID()
David Verdeguer committedMay 3, 2021 Copy the full SHA 519d077View commit details
Commits on Apr 30, 2021
-
Henning Makholm committed
Apr 30, 2021 Copy the full SHA 7ab95f6View commit details
Commits on Apr 29, 2021
-
David Verdeguer committed
Apr 29, 2021 Copy the full SHA c6e734cView commit details -
Don't use getOptionalInput on the runner codepath
David Verdeguer committedApr 29, 2021 Copy the full SHA 76f5adaView commit details
Commits on Apr 28, 2021
-
Avoid analyzing excluded language files for line counting
This change passes in a list of file types to the line counting analysis. These are the languages for the databases being analyzed. Line count analysis is restricted to these files.
Andrew Eisenberg committedApr 28, 2021 Copy the full SHA ee23462View commit details -
David Verdeguer committed
Apr 28, 2021 Unverified
No user is associated with the committer email.Copy the full SHA 40fb1f3View commit details
Commits on Apr 26, 2021
-
Add baseline metrics for lines of code
This commit uses a third party library to estimate the lines of code in a database that is to be analyzed by codeql. The estimate uses the same includes and excludes globs for determining which files should be counted. The lines of code count is returned by language and injected into the SARIF as `baseline` property in the `${language}/summary/lines-of-code` metric.
Andrew Eisenberg committedApr 26, 2021 Unverified
No user is associated with the committer email.Copy the full SHA 998f472View commit details