Consider testing CodeQL also against Kotlin EA versions
- Ngôn ngữ chính
- CodeQL
- Star
- 10.1k
- Fork
- 2.1k
- Merge trung bình
- 2 ngày 15 giờ
- Pull request đã merge (30 ngày)
- 141
Mô tả
**Description of the issue**
For some time now, all projects using Kotlin and CodeQL face the following situation:
1. A new Kotlin version is released
2. Dependabot, Renovate, or equivalent creates a PR to upgrade Kotlin
3. The PR fails as CodeQL doesn't support the new version yet
4. After some weeks, a CodeQL release is out for that version, but a new Kotlin version is also released briefly after, which basically restarts the process from step 1
The reported cases since last October:
* https://github.com/github/codeql/issues/22189
* https://github.com/github/codeql/issues/22210
* https://github.com/github/codeql/issues/21938
* https://github.com/github/codeql/issues/21484
* https://github.com/github/codeql/issues/21345
* https://github.com/github/codeql/issues/20661
Just by looking at the timeline of some of these issues, it should be visible how many public projects keep the Kotlin upgrade on hold due to the CodeQL compatibility.
Would you consider testing the current CodeQL version against the [Kotlin early-access versions](https://kotlinlang.org/docs/eap.html)?
I understand testing against EA versions won't necessarily mean anticipating the necessary changes, but I wonder if something relatively cheap could be achieved with a GitHub Actions matrix to at least bring awareness to the process.
Hướng dẫn đóng góp
Hướng nghiên cứu
Bắt đầu bằng việc xem xét các vấn đề CodeQL đã được báo cáo và tài liệu về các phiên bản Kotlin early-access, sau đó kiểm tra các workflow GitHub Actions hiện có trong repository để kiểm thử các phiên bản Kotlin. Xác định xem một ma trận có thể kiểm thử CodeQL hiện tại với các bản phát hành EAP của Kotlin hay không và xác định cách các lỗi cần được hiển thị. Được xem là hoàn tất khi phương án đã được ghi lại hoặc triển khai với phạm vi bao phủ có thể bảo trì cho các phiên bản EAP.
Do mô hình lập chỉ mục viết ra từ nội dung của issue.
Đánh giá
- Công nghệ
- github-actions, kotlin
- Lĩnh vực
- ci-cd, testing-qa
- Loại issue
- Tính năng
- Độ khó
- 4/5
- Thời gian dự kiến
- 3-5 ngày
- Mức độ hoạt động
- Ít trao đổi
- Độ rõ ràng
- Khá rõ ràng
- Mức phù hợp với người mới
- 48/100