Add CodeQL Stuart parameter to this repo #136
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Description
Allows CodeQL to be run locally by specifying
--codeql
whenproviding
stuart_update
andstuart_ci_build
commands in thisrepo.
stuart_update
- Automatically downloads the CodeQL CLI applicationappropriate for your host operating system
connection speed
stuart_ci_build
- Automatically runs CodeQL against the packagesbuilt after they are built.
NOTE: Running with CodeQL will increase your overall build time for a
couple of reasons:
(1) happens automatically, you do not need to specify a clean build
manually
For more information, such as:
And more...
Go to the CodeQL plugin readme:
https://github.com/microsoft/mu_basecore/blob/HEAD/.pytool/Plugin/CodeQL/Readme.md
flow, or firmware?
validation improvement, ...
in build or boot behavior?
a function in a new library class in a pre-existing module, ...
outside direct code modifications (and comments)?
on an a separate Web page, ...
How This Was Tested
Verified
--codeql
usage withstuart_update
andstuart_ci_build
locally.Integration Instructions
See earlier PR description and CodeQL plugin readme:
https://github.com/microsoft/mu_basecore/blob/HEAD/.pytool/Plugin/CodeQL/Readme.md
Signed-off-by: Michael Kubacki michael.kubacki@microsoft.com