chore: codeql analysis action (#548)
* Create codeql-analysis.yml * fix: custom codeql config * fix: ignore codeqldb dir * fix: use config file in codeql workflow Co-authored-by: Johnny Almonte <johnny243@users.noreply.github.com>
This commit is contained in:
12
.github/codeql/codeql-config.yml
vendored
Normal file
12
.github/codeql/codeql-config.yml
vendored
Normal file
@@ -0,0 +1,12 @@
|
||||
name: "Custom CodeQL Config"
|
||||
|
||||
queries:
|
||||
- uses: security-and-quality
|
||||
- uses: ./.github/codeql/custom-queries/javascript
|
||||
|
||||
paths:
|
||||
- app/assets/javascripts
|
||||
|
||||
paths-ignore:
|
||||
- bin
|
||||
- node_modules
|
||||
4
.github/codeql/custom-queries/javascript/qlpack.yml
vendored
Normal file
4
.github/codeql/custom-queries/javascript/qlpack.yml
vendored
Normal file
@@ -0,0 +1,4 @@
|
||||
name: custom-javascript-queries
|
||||
version: 0.0.0
|
||||
libraryPathDependencies:
|
||||
- codeql-javascript
|
||||
Reference in New Issue
Block a user