codeql/ruby
Erik Krogh Kristensen 90382c4d1c
Merge pull request #11178 from erik-krogh/passcode
JS/RB/PY: Recognize `passcode` as sensitive
2022-11-10 17:58:34 +01:00
..
.vscode
actions/create-extractor-pack CI: update actions/cache to v3 2022-10-18 14:07:52 +02:00
autobuilder
doc
downgrades Ruby: upgrade/downgrade scripts 2022-08-25 17:40:52 +02:00
extractor spelling: the 2022-10-13 10:56:41 -04:00
generator Ruby: update tree-sitter grammar 2022-08-25 17:21:29 +02:00
node-types spelling: possibility 2022-10-13 10:56:41 -04:00
old-change-notes
ql Merge pull request #11178 from erik-krogh/passcode 2022-11-10 17:58:34 +01:00
scripts
tools
.gitattributes
.gitignore
Cargo.lock Ruby: update tree-sitter grammar 2022-08-25 17:21:29 +02:00
Cargo.toml
Cross.toml
Makefile
README.md
codeql-extractor.yml
rust-toolchain.toml

README.md

Ruby analysis support for CodeQL

This directory contains the extractor, CodeQL libraries, and queries that power Ruby support in LGTM and the other CodeQL products that GitHub makes available to its customers worldwide.

It contains two major components:

  1. static analysis libraries and queries written in CodeQL that can be used to analyze such a database to find coding mistakes or security vulnerabilities.
  2. an extractor, written in Rust, that parses Ruby source code and converts it into a database that can be queried using CodeQL. See Developer information for information on building the extractor (you do not need to do this if you are only developing queries).