Run CodeQL in VMR's SDL stage (#19322)

This commit is contained in:
Přemek Vysoký 2024-04-05 15:34:23 +02:00 committed by GitHub
parent f7076a3de1
commit 1bdd67177f
No known key found for this signature in database
GPG key ID: B5690EEEBB952194

View file

@ -61,6 +61,13 @@ extends:
image: 1es-windows-2022
os: windows
codeql:
compiled:
enabled: true
# Runs analysis in the SDL stage and not every job
# https://eng.ms/docs/cloud-ai-platform/devdiv/one-engineering-system-1es/1es-docs/1es-pipeline-templates/features/sdlanalysis/codeql#improving-codeql-performance
runSourceLanguagesInSourceAnalysis: true
baseline:
baselineFile: $(Build.SourcesDirectory)\.config\guardian\.gdnbaselines