Skip to content

Commit d1027c1

Browse files
Merge pull request #8 from danielnovais-tech/copilot/fix-codeql-workflow-and-docs
fix: apply PR #2 review feedback - CodeQL auto-detection, docs accuracy
2 parents 7bf1386 + 67eaf89 commit d1027c1

5 files changed

Lines changed: 17 additions & 26 deletions

File tree

.github/dependabot.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -70,6 +70,7 @@ updates:
7070
- "docker"
7171
commit-message:
7272
prefix: "chore"
73+
prefix-development: "chore"
7374
include: "scope"
7475

7576
# Go dependencies (if go.mod exists)
@@ -85,4 +86,5 @@ updates:
8586
- "golang"
8687
commit-message:
8788
prefix: "chore"
89+
prefix-development: "chore"
8890
include: "scope"

.github/pull_request_template.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -68,4 +68,4 @@ Relates to #
6868

6969
<!-- @mencione revisores específicos, se houver -->
7070

71-
@
71+
@reviewer-username

.github/workflows/ci.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -116,7 +116,7 @@ jobs:
116116
- name: Setup Go
117117
uses: actions/setup-go@v5
118118
with:
119-
go-version: '1.21'
119+
go-version: '1.21.x'
120120

121121
- name: Build
122122
run: go build -v ./...

.github/workflows/codeql.yml

Lines changed: 2 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -23,28 +23,17 @@ jobs:
2323
name: Analyze Code
2424
runs-on: ubuntu-latest
2525

26-
strategy:
27-
fail-fast: false
28-
matrix:
29-
# Define languages to analyze
30-
# Supported: 'cpp', 'csharp', 'go', 'java', 'javascript', 'python', 'ruby', 'swift'
31-
language: ['javascript', 'python']
32-
3326
steps:
3427
- name: Checkout repository
3528
uses: actions/checkout@v4
3629

3730
- name: Initialize CodeQL
3831
uses: github/codeql-action/init@v3
39-
with:
40-
languages: ${{ matrix.language }}
41-
# If you want to specify queries, uncomment below
42-
# queries: security-and-quality
32+
# Languages are automatically detected based on repository contents
33+
# Supported: 'cpp', 'csharp', 'go', 'java', 'javascript', 'python', 'ruby', 'swift'
4334

4435
- name: Autobuild
4536
uses: github/codeql-action/autobuild@v3
4637

4738
- name: Perform CodeQL Analysis
4839
uses: github/codeql-action/analyze@v3
49-
with:
50-
category: "/language:${{matrix.language}}"

docs/AUTOMATION.md

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -96,10 +96,10 @@ PR Opened
9696

9797
**What it does**:
9898
- Scans code for security vulnerabilities
99-
- Analyzes JavaScript and Python code
99+
- Automatically detects and analyzes supported languages in the repository
100100
- Reports findings to Security tab
101101

102-
**Languages**: JavaScript, Python (automatically detected)
102+
**Languages**: Automatically detected (supports C++, C#, Go, Java, JavaScript, Python, Ruby, Swift)
103103

104104
**Permissions**: `actions: read`, `contents: read`, `security-events: write`
105105

@@ -116,7 +116,7 @@ PR Opened
116116
- `bugfix`: fix, bug, resolve, correct, patch, repair
117117
- `documentation`: docs, documentation, readme, guide, comment
118118
- `refactor`: refactor, cleanup, restructure, optimize, improve
119-
- `dependencies`: dependency, dependencies, dependabot, upgrade
119+
- `dependencies`: dependency, dependencies, dependabot, upgrade, update package
120120
- `ci`: ci, workflow, github actions, pipeline, automation
121121
- `security`: security, vulnerability, cve, exploit
122122
- `breaking-change`: breaking change, breaking, major version
@@ -153,14 +153,14 @@ Applied by the auto-label workflow based on PR content:
153153

154154
| Label | Description | Keywords |
155155
|-------|-------------|----------|
156-
| `enhancement` | New features or improvements | feat, feature, add, implement |
157-
| `bugfix` | Bug fixes | fix, bug, resolve, correct |
158-
| `documentation` | Documentation changes | docs, documentation, readme |
159-
| `refactor` | Code refactoring | refactor, cleanup, restructure |
160-
| `dependencies` | Dependency updates | dependency, dependabot, upgrade |
161-
| `ci` | CI/CD changes | ci, workflow, github actions |
162-
| `security` | Security-related changes | security, vulnerability, cve |
163-
| `breaking-change` | Breaking changes | breaking change, major version |
156+
| `enhancement` | New features or improvements | feat, feature, add, implement, enhance, new |
157+
| `bugfix` | Bug fixes | fix, bug, resolve, correct, patch, repair |
158+
| `documentation` | Documentation changes | docs, documentation, readme, guide, comment |
159+
| `refactor` | Code refactoring | refactor, cleanup, restructure, optimize, improve |
160+
| `dependencies` | Dependency updates | dependency, dependencies, dependabot, upgrade, update package |
161+
| `ci` | CI/CD changes | ci, workflow, github actions, pipeline, automation |
162+
| `security` | Security-related changes | security, vulnerability, cve, exploit |
163+
| `breaking-change` | Breaking changes | breaking change, breaking, major version |
164164
| `size/XS` to `size/XL` | PR size indicator | Automatically calculated |
165165

166166
### Manual Labels

0 commit comments

Comments
 (0)