github / github/codeql

Excluding filepaths from CodeQL CLI at analysis

未关闭
#12,811 5 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看
question
主要语言
CodeQL
星标
10.1k
派生
2.1k
平均合并
2 天 15 小时
30 天内合并 PR
141

描述

**Excluding filepaths from CodeQL CLI at analysis**

Hi,

I want to know if there is a way to exclude certain files and directories from CodeQL analysis (_**after the database has been built**_). Our last resort would be filtering results out of the SARIF **after** analysis, but we want to know if there is a way to do it **at** analysis time.

Someone on my team noticed a query that appears to have some file exclusion happening:

https://github.com/github/codeql/blob/main/javascript/ql/experimental/adaptivethreatmodeling/modelbuilding/extraction/Exclusions.qll

Although I don't know if this would really be relevant to what we're trying to do. We are running queries from query packs specified in the CLI, something like this:

`codeql database analyze ${DATABASE_NAME} ${QUERYPACKS}`

Is there any way to apply a file exclusion query (similar to the JavaScript one linked above) on top of the query pack, or is this infeasible?

Thanks!

贡献指南

打开贡献指南

评估

这个 Issue 还没有评估数据。

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。