github / codeql-coding-standards

This repository contains CodeQL queries and libraries which support various Coding Standards.
MIT License
129 stars 59 forks source link

Replace PAT with GitHub App for matrix/performance testing #726

Closed lcartey closed 1 month ago

lcartey commented 1 month ago

Description

This replaces an explicit PAT in our matrix/release testing scripts with a GitHub App. The app is already used in the release process (see https://github.com/github/codeql-coding-standards/pull/432), so this extends that use the matrix/performance testing that can be triggered by comments on a PR.

As part of this PR, we also update all uses of the actions/create-github-app-token to use v1.

Change request type

Rules with added or modified queries

Release change checklist

A change note (development_handbook.md#change-notes) is required for any pull request which modifies:

If you are only adding new rule queries, a change note is not required.

Author: Is a change note required?

🚨🚨🚨 Reviewer: Confirm that format of shared queries (not the .qll file, the .ql file that imports it) is valid by running them within VS Code.

Reviewer: Confirm that either a change note is not required or the change note is required and has been added.

Query development review checklist

For PRs that add new queries or modify existing queries, the following checklist should be completed by both the author and reviewer:

Author

Reviewer