github / github/codeql

Excluding filepaths from CodeQL CLI at analysis

未關閉
#12,811 5 則留言 0 個 reaction 已指派 0 人 在 GitHub 檢視
question
主要語言
CodeQL
星號
10.1k
分支
2.1k
平均合併
2 天 15 小時
30 天內合併 PR
141

描述

**Excluding filepaths from CodeQL CLI at analysis**

Hi,

I want to know if there is a way to exclude certain files and directories from CodeQL analysis (_**after the database has been built**_). Our last resort would be filtering results out of the SARIF **after** analysis, but we want to know if there is a way to do it **at** analysis time.

Someone on my team noticed a query that appears to have some file exclusion happening:

https://github.com/github/codeql/blob/main/javascript/ql/experimental/adaptivethreatmodeling/modelbuilding/extraction/Exclusions.qll

Although I don't know if this would really be relevant to what we're trying to do. We are running queries from query packs specified in the CLI, something like this:

`codeql database analyze ${DATABASE_NAME} ${QUERYPACKS}`

Is there any way to apply a file exclusion query (similar to the JavaScript one linked above) on top of the query pack, or is this infeasible?

Thanks!

貢獻指南

開啟貢獻指南

評估

這個 Issue 還沒有評估資料。

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。