Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
5 changes: 3 additions & 2 deletions .release.yml
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
name: codeql-extractor-iac
repository: advanced-security/codeql-extractor-iac
version: 0.5.0
version: 0.5.1

ecosystems:
- "Docs"
Expand Down Expand Up @@ -31,4 +31,5 @@ locations:
paths:
- "action.yml"
patterns:
- '{repository}@v{version}'
- "{repository}@v{version}"
- "advanced-security/iac-queries@{version}"
2 changes: 1 addition & 1 deletion Cargo.lock

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

2 changes: 1 addition & 1 deletion README.md
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@

```yaml
- name: Initialize and Analyze IaC
uses: advanced-security/[email protected].0
uses: advanced-security/[email protected].1
```

**Note:** See full documentation on [Workflows][docs-workflows].
Expand Down
14 changes: 11 additions & 3 deletions action.yml
Original file line number Diff line number Diff line change
Expand Up @@ -12,6 +12,12 @@ inputs:
default: ${{ github.token }}
required: false

rewrite-sarif-tool-name:
description: >
Whether to rewrite the SARIF tool name to "CodeQL IaC" or keep the original tool name.
required: false
default: "true"

outputs:
sarif-results:
description: >
Expand All @@ -22,10 +28,12 @@ runs:
using: "composite"
steps:
- name: "CodeQL Extractor Action"
uses: advanced-security/[email protected].0
uses: advanced-security/[email protected].5
id: extractor
with:
token: ${{ inputs.token }}
extractors: "advanced-security/[email protected].0"
packs: advanced-security/iac-queries
extractors: "advanced-security/[email protected].1"
packs: advanced-security/iac-queries@0.5.1
languages: "iac"
# Other settings
sarif-tool-name: ${{ inputs.rewrite-sarif-tool-name }}
2 changes: 1 addition & 1 deletion codeql-extractor.yml
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
name: "iac"
display_name: "IAC"
version: 0.5.0
version: 0.5.1
column_kind: "utf8"
legacy_qltest_extraction: true
github_api_languages:
Expand Down
4 changes: 2 additions & 2 deletions docs/workflows.md
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,7 @@ To use the CodeQL Extractor, Library, and Queries for Infrastructure as Code, yo

```yaml
- name: Initialize and Analyze IaC
uses: advanced-security/codeql-extractor-iac@v0.4.1
uses: advanced-security/codeql-extractor-iac@v0.5.1
```

### Uploading SARIF files to GitHub
Expand Down Expand Up @@ -50,7 +50,7 @@ jobs:

- name: Initialize and Analyze IaC
id: codeql_iac
uses: advanced-security/codeql-extractor-iac@v0.4.1
uses: advanced-security/codeql-extractor-iac@v0.5.1

- name: Upload SARIF file
uses: github/codeql-action/upload-sarif@v3
Expand Down
2 changes: 1 addition & 1 deletion extractor/Cargo.toml
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
[package]
name = "codeql-extractor-iac"
version = "0.5.0"
version = "0.5.1"
authors = ["GitHub"]

edition = "2024"
Expand Down
2 changes: 1 addition & 1 deletion ql/lib/qlpack.yml
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@
library: true
warnOnImplicitThis: false
name: advanced-security/iac-all
version: 0.5.0
version: 0.5.1
dependencies:
codeql/util: ^1.0.12
codeql/yaml: ^1.0.25
Expand Down
2 changes: 1 addition & 1 deletion ql/src/qlpack.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: advanced-security/iac-queries
version: 0.5.0
version: 0.5.1
groups:
- iac
- queries
Expand Down