An extension for Visual Studio Code that adds rich language support for CodeQL
Перейти к файлу
github-actions[bot] d4a4cbb4f1 Bump CLI version from v2.15.3 to v2.15.4 for integration tests 2023-12-11 16:54:11 +00:00
.github Bump actions/setup-node from 3 to 4 (#3024) 2023-10-26 11:02:49 -07:00
.husky Upgrade to Husky 8 2023-03-06 11:21:19 +01:00
.vscode Add comment about base config 2023-04-05 14:35:07 +01:00
docs Add note in Model with AI test case in test plan (#3109) 2023-12-06 10:23:33 +00:00
extensions/ql-vscode Bump CLI version from v2.15.3 to v2.15.4 for integration tests 2023-12-11 16:54:11 +00:00
scripts Ensure cli using latest version from the supported_cli_versions.json (#1992) 2023-01-20 17:13:14 +00:00
syntaxes Update compiled grammar 2023-10-09 16:58:00 +01:00
.editorconfig Update contributing documentation and launch config 2020-03-07 16:36:09 -08:00
.git-blame-ignore-revs Move list of ignored commits to root 2023-01-05 17:37:41 +00:00
.gitattributes Remove remaining references to `remote-queries` 2023-02-17 11:39:22 +01:00
.gitignore Update gitignore to avoid codeql metadata files 2022-11-18 11:33:53 -08:00
.markdownlint.json Move common markdownlint config to top-level file 2023-04-05 12:11:49 +01:00
CODEOWNERS Set SecExp as codeowner for modeling panel 2023-10-09 14:56:38 +02:00
CODE_OF_CONDUCT.md Remove bare links 2023-04-05 12:32:45 +01:00
CONTRIBUTING.md Fix generic links 2023-04-04 15:59:57 +01:00
LICENSE.md Add missing trailing newline 2023-04-04 16:56:41 +01:00
README.md Fix list style 2023-04-04 12:31:12 +01:00
tsconfig.json Add a top-level tsconfig.json 2020-08-24 10:58:17 -07:00

README.md

CodeQL for Visual Studio Code

This project is an extension for Visual Studio Code that adds rich language support for CodeQL. It's used to find problems in code bases using CodeQL. It's written primarily in TypeScript.

The extension is released. You can download it from the Visual Studio Marketplace.

To see what has changed in the last few versions of the extension, see the Changelog.

CI status badge VS Marketplace badge

Features

  • Enables you to use CodeQL to query databases and discover problems in codebases.
  • Shows the flow of data through the results of path queries, which is essential for triaging security results.
  • Provides an easy way to run queries from the large, open source repository of CodeQL security queries.
  • Adds IntelliSense to support you writing and editing your own CodeQL query and library files.
  • Supports you running CodeQL queries against thousands of repositories on GitHub using multi-repository variant analysis.

Project goals and scope

This project will track new feature development in CodeQL and, whenever appropriate, bring that functionality to the Visual Studio Code experience.

Dependencies

This extension depends on the following two extensions for required functionality. They will be installed automatically when you install VS Code CodeQL.

Contributing

This project welcomes contributions. See CONTRIBUTING.md for details on how to build, install, and contribute.

License

The CodeQL extension for Visual Studio Code is licensed under the MIT License. The version of CodeQL used by the CodeQL extension is subject to the CodeQL Research Terms & Conditions.

When using the GitHub logos, be sure to follow the GitHub logo guidelines.