ci: enable CodeQL SAST scanning for automated security analysis#5151
ci: enable CodeQL SAST scanning for automated security analysis#5151RishavTiwari25 wants to merge 2 commits intoboa-dev:mainfrom
Conversation
|
You are seeing this message because GitHub Code Scanning has recently been set up for this repository, or this pull request contains the workflow file for the Code Scanning tool. What Enabling Code Scanning Means:
For more information about GitHub Code Scanning, check out the documentation. |
Test262 conformance changes
Tested main commit: |
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #5151 +/- ##
===========================================
+ Coverage 47.24% 59.51% +12.27%
===========================================
Files 476 580 +104
Lines 46892 63181 +16289
===========================================
+ Hits 22154 37602 +15448
- Misses 24738 25579 +841 ☔ View full report in Codecov by Sentry. 🚀 New features to boost your workflow:
|
| push: | ||
| branches: [ "main" ] | ||
| pull_request: | ||
| branches: [ "main" ] |
There was a problem hiding this comment.
Maybe let's not run this on PRs and pushes. I imagine SASL analysis is a heavy action, so we kinda don't have the CI capacity to run this constantly
This Pull Request fixes/closes #5150
It changes the following:
github/codeql-action.rustto scan the main codebase and newly opened PRs for deeply-nested logical security bugs.contents: readpermissions.