New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
CodeQL: add 'False positive' issue template #11276
base: main
Are you sure you want to change the base?
Conversation
|
|
||
| <!-- | ||
| 1. Open the project on GitHub.com. | ||
| 2. Switch to the `Security` tab. For example, https://lgtm.com/projects/g/pallets/click/alerts/. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I think that this URL should be updated to a code-scanning URL
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Good catch. I removed that URL. Such URLs are inaccessible for others, so a real example would just be a dead link for most viewers.
Co-authored-by: Pierre <turbo@github.com>
| about: Report CodeQL alerts that you think should not have been detected (not applicable, not exploitable, etc.) | ||
| title: False positive | ||
| labels: false-positive | ||
| assignees: '' |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Do we want to assign this to the first responder automatically? @github/codeql-first-responder
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I don't think that will work - we can't assign teams to issues, only individuals. If we put the handle in the issue template body, the issue creator would need to be a member of our org to actually notify a team in our org.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Ah...didn't know that. I am happy with this template, though. @turbo should probably approve since he had some suggestions earlier.
No description provided.