Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Integrate CodeQL #182

Merged
merged 7 commits into from
Aug 13, 2024
Merged

Integrate CodeQL #182

merged 7 commits into from
Aug 13, 2024

Conversation

iamazeem
Copy link
Collaborator

@iamazeem iamazeem commented Aug 1, 2024

  • Configure CodeQL
    • Source + Tests

Check its results on my fork under:

Alerts' count:

  • without tests: 15
  • with tests: 20

Signed-off-by: Azeem Sajid [email protected]

@iamazeem iamazeem added the enhancement New feature or request label Aug 1, 2024
@iamazeem iamazeem self-assigned this Aug 1, 2024
@iamazeem iamazeem requested a review from liquidaty August 1, 2024 09:35
@iamazeem
Copy link
Collaborator Author

iamazeem commented Aug 1, 2024

@liquidaty: Hi, please review this PR.
LMK how CodeQL should be triggered.
Currently, it's configured to be run manually.
Thanks!

@liquidaty
Copy link
Owner

Great! let's have it trigger manually for now and we can change that after alerts have been reviewed/cleared. Thank you!

@iamazeem
Copy link
Collaborator Author

iamazeem commented Aug 2, 2024

@liquidaty: Please review and merge.
The redundant triggers have been removed.
Thanks!

@iamazeem
Copy link
Collaborator Author

iamazeem commented Aug 2, 2024

@liquidaty: Configured Dependabot for GHA with 3b4604e.
For any GHA version updates, it'll send alerts on weekly basis.

Docs: https://docs.github.com/en/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file

@liquidaty liquidaty merged commit 41e7aa8 into liquidaty:main Aug 13, 2024
0 of 3 checks passed
@iamazeem
Copy link
Collaborator Author

iamazeem commented Aug 14, 2024

@iamazeem
Copy link
Collaborator Author

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants