Skip to content

fix(codeql): analyse the languages this repository actually has - #62

Merged
hyperpolymath merged 1 commit into
mainfrom
fix/codeql-language-matrix
Aug 7, 2026
Merged

fix(codeql): analyse the languages this repository actually has#62
hyperpolymath merged 1 commit into
mainfrom
fix/codeql-language-matrix

Conversation

@hyperpolymath

Copy link
Copy Markdown
Owner

codeql database finalize was exiting 32 on every run:

CodeQL could not process any code written in JavaScript/TypeScript.

The matrix asserted javascript-typescript; this repository's languages are none. One codeql.yml was copied estate-wide with a hard-coded JS matrix — 82 repositories carry it, and 17 of the 18 sampled have no JavaScript at all (Julia, Rust, Zig, Agda, Ada, Haskell, Elixir).

This is not only a failing check. The crash uploads no SARIF, so a code_scanning ruleset rule requiring CodeQL waits forever on "Code scanning is waiting for results from CodeQL". One fault, two symptoms — and relaxing the rule's thresholds could not have helped, because no results arrive at all.

actions is kept (or added): it is valid in every repository, since every repository has workflow files, and it keeps this workflow producing a check and a SARIF upload even where CodeQL can analyse nothing else.

🤖 Generated with Claude Code

`codeql database finalize` was exiting 32 on every run:

    CodeQL could not process any code written in JavaScript/TypeScript.

The matrix asserted javascript-typescript, which this repository does not contain.
Its languages are: none.

This is not only a failing check. The crash uploads no SARIF, so a
`code_scanning` ruleset rule requiring CodeQL waits forever on "Code scanning
is waiting for results from CodeQL" — one fault, two symptoms. Relaxing the
rule's thresholds could not have helped, because no results arrive at all.

New matrix: actions. `actions` is valid in every repository (every
repository has workflow files) and keeps this workflow producing a check and a
SARIF upload even where CodeQL can analyse nothing else — most of this estate
is written in languages CodeQL does not support.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Signed-off-by: Jonathan D.A. Jewell <6759885+hyperpolymath@users.noreply.github.com>
@sonarqubecloud

sonarqubecloud Bot commented Aug 6, 2026

Copy link
Copy Markdown

@gitar-bot

This comment has been minimized.

@gitar-bot
gitar-bot Bot enabled auto-merge (squash) August 6, 2026 11:40

@gitar-bot gitar-bot Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Gitar has auto-approved this PR and enabled auto-merge (configure)

@gitar-bot gitar-bot Bot added the gitar-approved Added by Gitar label Aug 6, 2026
@hyperpolymath
hyperpolymath disabled auto-merge August 7, 2026 14:37
@hyperpolymath
hyperpolymath merged commit 6218678 into main Aug 7, 2026
2 checks passed
@hyperpolymath
hyperpolymath deleted the fix/codeql-language-matrix branch August 7, 2026 14:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

gitar-approved Added by Gitar

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant