Skip to content

Commit

Permalink
Merge pull request #552 from github/feature/update-user-manual-for-2.…
Browse files Browse the repository at this point in the history
…25.0

Release v2.25.0
  • Loading branch information
rvermeulen committed Mar 13, 2024
2 parents 3734236 + f3bb301 commit 34dbf36
Show file tree
Hide file tree
Showing 17 changed files with 22 additions and 21 deletions.
1 change: 1 addition & 0 deletions .github/workflows/update-release.yml
Expand Up @@ -31,6 +31,7 @@ jobs:
uses: actions/checkout@v4
with:
fetch-depth: 0 # We need the full history to compute the changelog
ref: ${{ inputs.head-sha }}

- name: Install Python
uses: actions/setup-python@v4
Expand Down
2 changes: 1 addition & 1 deletion c/cert/src/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/cert-c-coding-standards
version: 2.22.0-dev
version: 2.25.0
description: CERT C 2016
suites: codeql-suites
license: MIT
Expand Down
2 changes: 1 addition & 1 deletion c/cert/test/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/cert-c-coding-standards-tests
version: 2.22.0-dev
version: 2.25.0
extractor: cpp
license: MIT
dependencies:
Expand Down
2 changes: 1 addition & 1 deletion c/common/src/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/common-c-coding-standards
version: 2.22.0-dev
version: 2.25.0
license: MIT
dependencies:
codeql/common-cpp-coding-standards: '*'
Expand Down
2 changes: 1 addition & 1 deletion c/common/test/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/common-c-coding-standards-tests
version: 2.22.0-dev
version: 2.25.0
extractor: cpp
license: MIT
dependencies:
Expand Down
2 changes: 1 addition & 1 deletion c/misra/src/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/misra-c-coding-standards
version: 2.22.0-dev
version: 2.25.0
description: MISRA C 2012
suites: codeql-suites
license: MIT
Expand Down
2 changes: 1 addition & 1 deletion c/misra/test/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/misra-c-coding-standards-tests
version: 2.22.0-dev
version: 2.25.0
extractor: cpp
license: MIT
dependencies:
Expand Down
2 changes: 1 addition & 1 deletion cpp/autosar/src/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/autosar-cpp-coding-standards
version: 2.22.0-dev
version: 2.25.0
description: AUTOSAR C++14 Guidelines R22-11, R21-11, R20-11, R19-11 and R19-03
suites: codeql-suites
license: MIT
Expand Down
2 changes: 1 addition & 1 deletion cpp/autosar/test/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/autosar-cpp-coding-standards-tests
version: 2.22.0-dev
version: 2.25.0
extractor: cpp
license: MIT
dependencies:
Expand Down
2 changes: 1 addition & 1 deletion cpp/cert/src/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/cert-cpp-coding-standards
version: 2.22.0-dev
version: 2.25.0
description: CERT C++ 2016
suites: codeql-suites
license: MIT
Expand Down
2 changes: 1 addition & 1 deletion cpp/cert/test/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/cert-cpp-coding-standards-tests
version: 2.22.0-dev
version: 2.25.0
extractor: cpp
license: MIT
dependencies:
Expand Down
2 changes: 1 addition & 1 deletion cpp/common/src/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/common-cpp-coding-standards
version: 2.22.0-dev
version: 2.25.0
license: MIT
dependencies:
codeql/cpp-all: 0.9.3
Expand Down
2 changes: 1 addition & 1 deletion cpp/common/test/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/common-cpp-coding-standards-tests
version: 2.22.0-dev
version: 2.25.0
extractor: cpp
license: MIT
dependencies:
Expand Down
2 changes: 1 addition & 1 deletion cpp/misra/src/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/misra-cpp-coding-standards
version: 2.22.0-dev
version: 2.25.0
description: MISRA C++ 2008
suites: codeql-suites
license: MIT
Expand Down
2 changes: 1 addition & 1 deletion cpp/misra/test/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/misra-cpp-coding-standards-tests
version: 2.22.0-dev
version: 2.25.0
extractor: cpp
license: MIT
dependencies:
Expand Down
2 changes: 1 addition & 1 deletion cpp/report/src/qlpack.yml
@@ -1,5 +1,5 @@
name: codeql/report-cpp-coding-standards
version: 2.22.0-dev
version: 2.25.0
license: MIT
dependencies:
codeql/cpp-all: 0.9.3
12 changes: 6 additions & 6 deletions docs/user_manual.md
Expand Up @@ -29,13 +29,13 @@

## Release information

This user manual documents release `2.22.0-dev` of the coding standards located at [https://github.com/github/codeql-coding-standards](https://github.com/github/codeql-coding-standards).
This user manual documents release `2.25.0` of the coding standards located at [https://github.com/github/codeql-coding-standards](https://github.com/github/codeql-coding-standards).
The release page documents the release notes and contains the following artifacts part of the release:

- `code-scanning-cpp-query-pack-2.22.0-dev.zip`: coding standard queries and scripts to be used with GitHub Code Scanning or the CodeQL CLI as documented in the section _Operating manual_.
- `supported_rules_list_2.22.0-dev.csv`: A Comma Separated File (CSV) containing the supported rules per standard and the queries that implement the rule.
- `supported_rules_list_2.22.0-dev.md`: A Markdown formatted file with a table containing the supported rules per standard and the queries that implement the rule.
- `user_manual_2.22.0-dev.md`: This user manual.
- `code-scanning-cpp-query-pack-2.25.0.zip`: coding standard queries and scripts to be used with GitHub Code Scanning or the CodeQL CLI as documented in the section _Operating manual_.
- `supported_rules_list_2.25.0.csv`: A Comma Separated File (CSV) containing the supported rules per standard and the queries that implement the rule.
- `supported_rules_list_2.25.0.md`: A Markdown formatted file with a table containing the supported rules per standard and the queries that implement the rule.
- `user_manual_2.25.0.md`: This user manual.
- `Source Code (zip)`: A zip archive containing the contents of https://github.com/github/codeql-coding-standards
- `Source Code (tar.gz)`: A GZip compressed tar archive containing the contents of https://github.com/github/codeql-coding-standards
- `checksums.txt`: A text file containing sha256 checksums for the aforementioned artifacts.
Expand Down Expand Up @@ -496,7 +496,7 @@ This section describes known failure modes for "CodeQL Coding Standards" and des
| | Ouf of space | Less output. Some files may be only be partially analyzed, or not analyzed at all. | Error reported on the command line. | Increase space. If it remains an issue report space consumption issues via the CodeQL Coding Standards [bug tracker](https://github.com/github/codeql-coding-standards/issues). |
| | False positives | More output. Results are reported which are not violations of the guidelines. | All reported results must be reviewed. | Report false positive issues via the CodeQL Coding Standards [bug tracker](https://github.com/github/codeql-coding-standards/issues). |
| | False negatives | Less output. Violations of the guidelines are not reported. | Other validation and verification processes during software development should be used to complement the analysis performed by CodeQL Coding Standards. | Report false negative issues via the CodeQL Coding Standards [bug tracker](https://github.com/github/codeql-coding-standards/issues). |
| | Modifying coding standard suite | More or less output. If queries are added to the query set more result can be reported. If queries are removed less results might be reported. | All queries supported by the CodeQL Coding Standards are listed in the release artifacts `supported_rules_list_2.22.0-dev.csv` where VERSION is replaced with the used release. The rules in the resulting Sarif file must be cross-referenced with the expected rules in this list to determine the validity of the used CodeQL suite. | Ensure that the CodeQL Coding Standards are not modified in ways that are not documented as supported modifications. |
| | Modifying coding standard suite | More or less output. If queries are added to the query set more result can be reported. If queries are removed less results might be reported. | All queries supported by the CodeQL Coding Standards are listed in the release artifacts `supported_rules_list_2.25.0.csv` where VERSION is replaced with the used release. The rules in the resulting Sarif file must be cross-referenced with the expected rules in this list to determine the validity of the used CodeQL suite. | Ensure that the CodeQL Coding Standards are not modified in ways that are not documented as supported modifications. |
| | Incorrect deviation record specification | More output. Results are reported for guidelines for which a deviation is assigned. | Analysis integrity report lists all deviations and incorrectly specified deviation records with a reason. Ensure that all deviation records are correctly specified. | Ensure that the deviation record is specified according to the specification in the user manual. |
| | Incorrect deviation permit specification | More output. Results are reported for guidelines for which a deviation is assigned. | Analysis integrity report lists all deviations and incorrectly specified deviation permits with a reason. Ensure that all deviation permits are correctly specified. | Ensure that the deviation record is specified according to the specification in the user manual. |
| | Unapproved use of a deviation record | Less output. Results for guideline violations are not reported. | Validate that the deviation record use is approved by verifying the approved-by attribute of the deviation record specification. | Ensure that each raised deviation record is approved by an independent approver through an auditable process. |
Expand Down

0 comments on commit 34dbf36

Please sign in to comment.