Uploaded image for project: 'Apache NiFi'
  1. Apache NiFi
  2. NIFI-12278

Add GitHub CodeQL Scanning to Static Analysis Job

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • None
    • 2.0.0-M1
    • Tools and Build
    • None

    Description

      GitHub CodeQL scanning is available for public repositories and provides a default set of rules for common coding security vulnerabilities.

      The ci-workflow Static Analysis Job should be updated to include CodeQL scanning actions to detect potential concerns during the build process.

      Attachments

        Issue Links

          Activity

            People

              exceptionfactory David Handermann
              exceptionfactory David Handermann
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Time Tracking

                  Estimated:
                  Original Estimate - Not Specified
                  Not Specified
                  Remaining:
                  Remaining Estimate - 0h
                  0h
                  Logged:
                  Time Spent - 1h 40m
                  1h 40m