Skip to content

Commit eaa13fa

Browse files
authored
Review and update the front matter for CodeQL tools (#52725)
1 parent 1e86904 commit eaa13fa

File tree

7 files changed

+16
-18
lines changed

7 files changed

+16
-18
lines changed

content/code-security/codeql-cli/getting-started-with-the-codeql-cli/preparing-your-code-for-codeql-analysis.md

+1
Original file line numberDiff line numberDiff line change
@@ -2,6 +2,7 @@
22
title: Preparing your code for CodeQL analysis
33
intro: 'You can build a {% data variables.product.prodname_codeql %} database containing the data needed to analyze your code.'
44
shortTitle: Preparing code for analysis
5+
permissions: '{% data reusables.permissions.repo-checkout %}'
56
product: '{% data reusables.gated-features.codeql %}'
67
versions:
78
fpt: '*'

content/code-security/codeql-cli/getting-started-with-the-codeql-cli/uploading-codeql-analysis-results-to-github.md

+7-1
Original file line numberDiff line numberDiff line change
@@ -2,6 +2,7 @@
22
title: Uploading CodeQL analysis results to GitHub
33
shortTitle: Uploading results to GitHub
44
intro: 'You can use the {% data variables.product.prodname_codeql_cli %} to upload {% data variables.product.prodname_codeql %} analysis results to {% data variables.product.product_name %}.'
5+
permissions: '{% data reusables.permissions.code-scanning-all-alerts %}'
56
product: '{% data reusables.gated-features.codeql %}'
67
versions:
78
fpt: '*'
@@ -25,7 +26,12 @@ If you used a method other than the {% data variables.product.prodname_codeql_cl
2526

2627
## Generating a token for authentication with {% data variables.product.product_name %}
2728

28-
Before you can upload your results to {% data variables.product.product_name %}, you will first need to generate a {% data variables.product.pat_generic %} with the `security_events` write permission. For more information, see "[AUTOTITLE](/authentication/keeping-your-account-and-data-secure/creating-a-personal-access-token)."
29+
Before you can upload your results to {% data variables.product.product_name %}, you will first need to generate a {% data variables.product.pat_generic %}.
30+
31+
* **{% data variables.product.pat_v1_caps %}** requires "{% data variables.product.prodname_code_scanning_caps %} alerts" **Read and write** access for the required repositories.
32+
* **{% data variables.product.pat_v2_caps %}** requires "repo" **security_events** access.
33+
34+
For more information, see "[AUTOTITLE](/authentication/keeping-your-account-and-data-secure/creating-a-personal-access-token)."
2935

3036
If you have installed the {% data variables.product.prodname_codeql_cli %} in a third-party CI system to create results to display in {% data variables.product.prodname_dotcom %} as code scanning alerts, you can use a {% data variables.product.prodname_github_app %} or {% data variables.product.pat_generic %} to upload results to {% data variables.product.product_name %}. For more information, see "[AUTOTITLE](/code-security/code-scanning/integrating-with-code-scanning/using-code-scanning-with-your-existing-ci-system#generating-a-token-for-authentication-with-github)."
3137

content/code-security/codeql-for-vs-code/getting-started-with-codeql-for-vs-code/about-codeql-for-vs-code.md

+1
Original file line numberDiff line numberDiff line change
@@ -5,6 +5,7 @@ versions:
55
fpt: '*'
66
ghec: '*'
77
ghes: '*'
8+
product: '{% data reusables.gated-features.codeql %}'
89
topics:
910
- Advanced Security
1011
- Code scanning

content/code-security/codeql-for-vs-code/getting-started-with-codeql-for-vs-code/installing-codeql-for-vs-code.md

+1
Original file line numberDiff line numberDiff line change
@@ -5,6 +5,7 @@ versions:
55
fpt: '*'
66
ghec: '*'
77
ghes: '*'
8+
product: '{% data reusables.gated-features.codeql %}'
89
topics:
910
- Advanced Security
1011
- Code scanning
Original file line numberDiff line numberDiff line change
@@ -1,20 +1,5 @@
11
## About the {% data variables.product.prodname_dotcom %} {% data variables.product.prodname_codeql %} license
22

3-
**License notice:** If you don’t have a {% data variables.product.prodname_enterprise %} license then, by installing this product, you are agreeing to the [{% data variables.product.prodname_dotcom %} {% data variables.product.prodname_codeql %} Terms and Conditions](https://securitylab.github.com/tools/codeql/license).
4-
5-
{% data variables.product.prodname_dotcom %} {% data variables.product.prodname_codeql %} is licensed on a per-user basis. Under the license restrictions, you can use {% data variables.product.prodname_codeql %} to perform the following tasks:
6-
7-
* To perform academic research.
8-
* To demonstrate the software.
9-
* To test {% data variables.product.prodname_codeql %} queries that are released under an OSI-approved License to confirm that new versions of those queries continue to find the right vulnerabilities.
10-
11-
Where "OSI-approved License" means an Open Source Initiative (OSI)-approved open source software license.
12-
13-
If you are working with an Open Source Codebase (that is, a codebase that is released under an OSI-approved License) you can also use {% data variables.product.prodname_codeql %} for the following tasks:
14-
15-
* To perform analysis of the Open Source Codebase.
16-
* If the Open Source Codebase is hosted and maintained on {% data variables.product.prodname_dotcom_the_website %}, to generate {% data variables.product.prodname_codeql %} databases for or during automated analysis, continuous integration, or continuous delivery.
17-
18-
{% data variables.product.prodname_codeql %} can’t be used for automated analysis, continuous integration or continuous delivery, whether as part of normal software engineering processes or otherwise, except in the express cases set forth herein unless you have a license for {% data variables.product.prodname_GH_advanced_security %}.
3+
**License notice:** If you don’t have a license for {% data variables.product.prodname_GH_advanced_security %} then, by installing this product, you are agreeing to the [{% data variables.product.prodname_dotcom %} {% data variables.product.prodname_codeql %} Terms and Conditions](https://github.com/github/codeql-cli-binaries/blob/main/LICENSE.md).
194

205
{% data reusables.advanced-security.ghas-trial %}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
Users with **read** access to a repository
Original file line numberDiff line numberDiff line change
@@ -1 +1,4 @@
1-
{% data variables.product.prodname_copilot_autofix %} for {% data variables.product.prodname_code_scanning %} is available for all public repositories on {% data variables.product.prodname_dotcom_the_website %}. {% data variables.product.prodname_copilot_autofix %} for {% data variables.product.prodname_code_scanning %} is also available for private repositories owned by organizations that use {% data variables.product.prodname_ghe_cloud %} and have a license for {% data variables.product.prodname_GH_advanced_security %}. For more information, see "[AUTOTITLE](/get-started/learning-about-github/about-github-advanced-security)."
1+
{% data variables.product.prodname_copilot_autofix %} for {% data variables.product.prodname_code_scanning %} is available for the following repository types:
2+
3+
* Public repositories on {% data variables.product.prodname_dotcom_the_website %}
4+
* Organization-owned repositories on {% data variables.product.prodname_ghe_cloud %} with [{% data variables.product.prodname_GH_advanced_security %}](/get-started/learning-about-github/about-github-advanced-security) enabled

0 commit comments

Comments
 (0)