File tree Expand file tree Collapse file tree 2 files changed +69
-0
lines changed
Expand file tree Collapse file tree 2 files changed +69
-0
lines changed Original file line number Diff line number Diff line change 1+ name : " LiteLLM CodeQL config"
2+
3+ # Exclude queries that produce result sets > 2 GiB on this codebase,
4+ # causing 49+ minute runs that fail and block CI resources.
5+ query-filters :
6+ - exclude :
7+ id : py/clear-text-logging-sensitive-data # CWE-312/CleartextLogging.ql — result set > 2 GiB
8+ - exclude :
9+ id : py/polynomial-redos # CWE-730/PolynomialReDoS.ql — result set > 2 GiB
10+
11+ paths-ignore :
12+ - tests
13+ - docs
14+ - " **/*.md"
15+ - litellm/proxy/_experimental/out
Original file line number Diff line number Diff line change 1+ name : " CodeQL"
2+
3+ on :
4+ push :
5+ branches : [main]
6+ pull_request :
7+ branches : [main]
8+ schedule :
9+ # Run weekly on Sundays at 04:00 UTC
10+ - cron : " 0 4 * * 0"
11+
12+ concurrency :
13+ group : ${{ github.workflow }}-${{ github.ref }}
14+ cancel-in-progress : ${{ github.event_name == 'pull_request' }}
15+
16+ jobs :
17+ analyze :
18+ name : Analyze (${{ matrix.language }})
19+ runs-on : ubuntu-latest
20+ timeout-minutes : 30
21+ permissions :
22+ security-events : write
23+ packages : read
24+ actions : read
25+ contents : read
26+
27+ strategy :
28+ fail-fast : false
29+ matrix :
30+ include :
31+ - language : actions
32+ build-mode : none
33+ - language : javascript-typescript
34+ build-mode : none
35+ - language : python
36+ build-mode : none
37+ - language : ruby
38+ build-mode : none
39+
40+ steps :
41+ - name : Checkout repository
42+ uses : actions/checkout@v4
43+
44+ - name : Initialize CodeQL
45+ uses : github/codeql-action/init@v3
46+ with :
47+ languages : ${{ matrix.language }}
48+ build-mode : ${{ matrix.build-mode }}
49+ config-file : ./.github/codeql/codeql-config.yml
50+
51+ - name : Perform CodeQL Analysis
52+ uses : github/codeql-action/analyze@v3
53+ with :
54+ category : " /language:${{ matrix.language }}"
You can’t perform that action at this time.
0 commit comments