Skip to content

Commit a9670e8

Browse files
committed
ci(codeql): back to queries
1 parent 5008e0d commit a9670e8

File tree

4 files changed

+4
-9
lines changed

4 files changed

+4
-9
lines changed

.github/codeql/codeql-config.yml

Lines changed: 0 additions & 3 deletions
This file was deleted.

.github/codeql/custom-queries-javascript/ShellSanitizer.qll renamed to .github/codeql/custom-queries-javascript/ShellSanitizer.ql

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -14,3 +14,6 @@ class ShellArgSanitizer extends CommandInjection::Sanitizer {
1414
this.(DataFlow::CallNode).getCalleeName() = "sanitizeShellArg"
1515
}
1616
}
17+
18+
// needed to make the module valid https://codeql.github.com/docs/ql-language-reference/modules/#query-modules
19+
where 1 = 0 select "no-op"

.github/codeql/custom-queries-javascript/qlpack.yml

Lines changed: 0 additions & 5 deletions
This file was deleted.

.github/workflows/codeql-analysis.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -49,7 +49,7 @@ jobs:
4949
# By default, queries listed here will override any specified in a config file.
5050
# Prefix the list here with "+" to use these queries and those in the config file.
5151
# queries: ./path/to/local/query, your-org/your-repo/queries@main
52-
config-file: ./.github/codeql/codeql-config.yml
52+
queries: ./.github/codeql/custom-queries-javascript/ShellSanitizer.ql
5353

5454
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
5555
# If this step fails, then you should remove it and run the build manually (see below)

0 commit comments

Comments
 (0)