Skip to content

Commit 2216aa7

Browse files
authored
chore: codeql sarif filter (#730)
1 parent f6b1676 commit 2216aa7

File tree

1 file changed

+24
-0
lines changed

1 file changed

+24
-0
lines changed

.github/workflows/code-ql.yml

Lines changed: 24 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -108,3 +108,27 @@ jobs:
108108
109109
- name: Perform CodeQL Analysis
110110
uses: github/codeql-action/analyze@v3
111+
with:
112+
category: "/language:cpp"
113+
output: sarif-results
114+
upload: failure-only
115+
116+
- name: filter-sarif
117+
uses: advanced-security/filter-sarif@v1
118+
with:
119+
patterns: |
120+
-pktvisor/build/conan_home/**/*
121+
input: sarif-results/cpp.sarif
122+
output: sarif-results/cpp.sarif
123+
124+
- name: Upload SARIF
125+
uses: github/codeql-action/upload-sarif@v3
126+
with:
127+
sarif_file: sarif-results/cpp.sarif
128+
129+
- name: Upload loc as a Build Artifact
130+
uses: actions/upload-artifact@v4
131+
with:
132+
name: sarif-results
133+
path: sarif-results
134+
retention-days: 1

0 commit comments

Comments
 (0)