Skip to content

Commit e55ca89

Browse files
committed
codeql: also check JavaScript code
Let's exclude GitWeb from being scanned; It is not distributed by us. Signed-off-by: Johannes Schindelin <[email protected]>
1 parent 0bb7d99 commit e55ca89

File tree

2 files changed

+6
-3
lines changed

2 files changed

+6
-3
lines changed

.github/codeql/codeql-config.yml

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -3,6 +3,9 @@ name: "CodeQL config"
33
queries:
44
- uses: security-extended
55

6+
paths-ignore:
7+
- gitweb/**/*.js # GitWeb is not distributed
8+
69
query-filters:
710
- exclude:
811
# yes, this extra indentation is intentional

.github/workflows/codeql.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@ jobs:
1717
strategy:
1818
fail-fast: false
1919
matrix:
20-
language: ["cpp"]
20+
language: ["cpp", "javascript"]
2121

2222
steps:
2323
- name: Checkout repository
@@ -55,10 +55,10 @@ jobs:
5555
- name: publish sarif for debugging
5656
uses: actions/upload-artifact@v4
5757
with:
58-
name: sarif-results
58+
name: sarif-results-${{ matrix.language }}
5959
path: sarif-results
6060

6161
- name: Upload SARIF
6262
uses: github/codeql-action/upload-sarif@v3
6363
with:
64-
sarif_file: sarif-results/cpp.sarif
64+
sarif_file: sarif-results/${{ matrix.language }}.sarif

0 commit comments

Comments
 (0)