-
Notifications
You must be signed in to change notification settings - Fork 532
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Enable codeql workflow #9277
Enable codeql workflow #9277
Conversation
i'm a bit worried about this, as it runs really late, aka only in the pr, so problems could be costly to fix as they are not found in the dev inner loop |
595436b
to
0ff03f3
Compare
I agree that this is not ideal. I'm not sure it's possible to run locally, but perhaps in a container. But I don't think we should block on that at the moment. These alerts should not prevent anyone from merging at this point. (It's possible I have made config mistakes here like I did with codeowners, but if so, we'll sort them out quickly.) Before we turn on any actual gates, we'll get answers for this and other questions. |
sounds good. also, what kind of issue will this find. i don't know anything about codeql |
The links to example issues keep disappearing, likely because we don't have a baseline in main yet, so I am going to quit chasing them and merge. |
No description provided.