Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
162 commits
Select commit Hold shift + click to select a range
57b1c74
Bump xunit from 2.6.3 to 2.6.4 (#20967)
dependabot[bot] Jan 2, 2024
4200af1
Bump xunit.runner.visualstudio from 2.5.5 to 2.5.6 (#20966)
dependabot[bot] Jan 2, 2024
5282c9b
Add Import-LocalizedData implicit Localization fallback (#19896)
chrisdent-de Jan 4, 2024
c3eedde
Fix typo in remotingexceptions.cs (#21015)
eltociear Jan 7, 2024
3dbd1c6
Fix failures in GitHub action `markdown-link-check` (#20996)
JamesWTruher Jan 8, 2024
c955570
Bump xunit from 2.6.4 to 2.6.5 (#21008)
dependabot[bot] Jan 8, 2024
39faeb4
Include information about upgrading in README (#20993)
StevenBucher98 Jan 8, 2024
40dbbff
Update the cgmanifest (#20955)
pwshBot Jan 9, 2024
ac55918
Add `Aliases` to the properties shown up when formatting the help con…
daxian-dbw Jan 9, 2024
9cc5826
Bump JsonSchema.Net from 5.4.2 to 5.5.0 (#21027)
dependabot[bot] Jan 10, 2024
68204ae
Fix regression -Tail 0 -Wait (#20734)
CarloToso Jan 11, 2024
a8e1924
Update README.md and metadata.json for v7.2.18 and v7.4.1 releases (#…
daxian-dbw Jan 11, 2024
e453c00
Update changelog for v7.2 and v7.3 (#21052)
daxian-dbw Jan 11, 2024
023b1f5
Bump xunit from 2.6.5 to 2.6.6 (#21071)
dependabot[bot] Jan 16, 2024
1682d61
Bump StyleCop.Analyzers from 1.2.0-beta.507 to 1.2.0-beta.556 (#20953)
dependabot[bot] Jan 16, 2024
ad20767
Update to the latest NOTICES file (#20905)
pwshBot Jan 16, 2024
b2ba584
Update the cgmanifest (#21047)
pwshBot Jan 16, 2024
9da657e
Fix completion crash for the SCCM provider (#20915)
MartinGC94 Jan 17, 2024
8283ac0
Bump .NET SDK to 8.0.101 (#21084)
daxian-dbw Jan 17, 2024
31dfb6d
Add `WinGetCommandNotFound` and `CompletionPredictor` modules to trac…
StevenBucher98 Jan 18, 2024
53d1a0d
Merged PR 29314: Update ChangeLog for v7.5.0-preview.1
daxian-dbw Jan 18, 2024
dd598b3
Update `README.md` and `metadata.json` for v7.5.0-preview.1 release (…
daxian-dbw Jan 18, 2024
f0076b9
Merge the v7.5.0-preview.1 release branch to GitHub master branch
daxian-dbw Jan 18, 2024
4f02a89
Fix Get-Error serialization of array values (#21085)
jborean93 Jan 24, 2024
783fb46
Validate the value for `using namespace` during semantic checks to pr…
daxian-dbw Feb 1, 2024
e9682c1
Fix `using assembly` to use `Path.Combine` when constructing assembly…
JamesWTruher Feb 1, 2024
7ad4039
Add `DirectoryInfo` to the `OutputType` for `New-Item` (#21126)
MartinGC94 Feb 1, 2024
2cfa84c
Bump JsonSchema.Net to v5.5.1 (#21120)
gregsdennis Feb 1, 2024
18d31b1
Update changelog for v7.4.1 (#21098)
SeeminglyScience Feb 1, 2024
18c3e3e
Update WG members (#21091)
StevenBucher98 Feb 1, 2024
ca5f73b
Update the cgmanifest (#21093)
pwshBot Feb 1, 2024
3df0aa3
Fix incorrect examples in XML docs in `PowerShell.cs` (#21173)
daxian-dbw Feb 1, 2024
7963982
Generate MSI for `win-arm64` installer (#20516)
anamnavi Feb 1, 2024
0919240
Rewrite the mac syslog tests to make them less flaky (#21174)
JamesWTruher Feb 7, 2024
95b56be
Update versions of PSResourceGet (#21190)
alerickson Feb 10, 2024
c56a52b
Add tilde expansion for windows native executables (#20402)
domsleee Feb 12, 2024
8dfe19e
Bump XunitXml.TestLogger from 3.1.17 to 3.1.20 (#21207)
dependabot[bot] Feb 12, 2024
c7249c6
Remove `PSScheduledJob` module source code (#21189)
SteveL-MSFT Feb 12, 2024
16c3f5c
Update to the latest NOTICES file (#21177)
pwshBot Feb 12, 2024
9c7f13e
Update the cgmanifest (#21178)
pwshBot Feb 12, 2024
0393ef2
Fix a typo in `CoreAdapter.cs` (#21179)
eltociear Feb 12, 2024
7103554
ConvertFrom-Json: Add -DateKind parameter (#20925)
jborean93 Feb 13, 2024
0e9ad8d
Bump Microsoft.NET.Test.Sdk from 17.8.0 to 17.9.0
dependabot[bot] Feb 13, 2024
b88eaf7
Update dependabot.yml
imatthewtanner Feb 13, 2024
d4d52c8
Merge branch 'master' into dependabot/nuget/Microsoft.NET.Test.Sdk-17…
imatthewtanner Feb 13, 2024
2ec506a
Bump Microsoft.NET.Test.Sdk from 17.8.0 to 17.9.0 (#13)
imatthewtanner Feb 13, 2024
ba298f6
Create codeql.yml
imatthewtanner Feb 13, 2024
dd99a77
Bump the nuget group across 1 directories with 1 update
dependabot[bot] Feb 13, 2024
8cfe127
Bump the nuget group across 1 directories with 1 update (#15)
imatthewtanner Feb 13, 2024
002b623
Bump PowerShellGet from 2.2.5 to 2.2.5.1 in /src/Modules
dependabot[bot] Feb 14, 2024
a145f47
Bump to .NET 9 Preview 1 (#21229)
adityapatwardhan Feb 16, 2024
65a1a66
Update the cgmanifest (#21237)
pwshBot Feb 16, 2024
e3b1d43
Update to the latest NOTICES file (#21236)
pwshBot Feb 16, 2024
e7fd228
Update experimental-feature json files (#21213)
pwshBot Feb 16, 2024
c6921db
Remove `surrogateFile` setting of APIScan (#21238)
adityapatwardhan Feb 16, 2024
d213bc8
Add dotenv install as latest version does not work with current Ruby …
adityapatwardhan Feb 16, 2024
2b0a21d
Bump xunit from 2.6.6 to 2.7.0
dependabot[bot] Feb 19, 2024
6f9bd6b
Bump xunit.runner.visualstudio from 2.5.6 to 2.5.7
dependabot[bot] Feb 19, 2024
597009d
Add dotnet-runtime-9.0 as a dependency for the Mariner package (#21259)
adityapatwardhan Feb 21, 2024
5550e55
Adding WG membership template (#21153)
theJasonHelmick Feb 22, 2024
cdb3331
Update `metadata.json` and `README.md` (#21264)
adityapatwardhan Feb 23, 2024
8921a7d
Skip test on Windows Server 2012 R2 for `no-nl` (#21265)
adityapatwardhan Feb 23, 2024
a880377
Fix a regression in `Format-Table` when header label is empty (#21156)
SteveL-MSFT Feb 26, 2024
05ed2f2
Revert "Adjust PUT method behavior to POST one for default content ty…
SteveL-MSFT Feb 26, 2024
338d1dc
Fix the regression when doing type inference for `$_` (#21223)
MartinGC94 Feb 26, 2024
fcf4953
ConvertTo-Json: Serialize `BigInteger` as a number (#21000)
jborean93 Feb 27, 2024
c3594c5
Remove `JetBrains.Annotations` attributes (#21246)
xtqqczze Feb 27, 2024
f8ca532
Suppress MacOS package manager output (#21244)
xtqqczze Feb 27, 2024
0e106fa
Enable CA1868: Unnecessary call to 'Contains' for sets (#21165)
xtqqczze Feb 29, 2024
b6e018b
Bump Microsoft.CodeAnalysis.CSharp from 4.8.0 to 4.9.2
dependabot[bot] Mar 4, 2024
5e9a3b9
Bump Microsoft.CodeAnalysis.Analyzers (#21297)
dependabot[bot] Mar 4, 2024
6f0c9a5
Bump Microsoft.CodeAnalysis.CSharp from 4.9.0-3.final to 4.9.2 (#21298)
dependabot[bot] Mar 4, 2024
1dc2ebe
Fix error formatting for pipeline enumeration exceptions (#20211)
SeeminglyScience Mar 4, 2024
aa97c51
Fall back to type inference when hashtable key value cannot be retrie…
MartinGC94 Mar 4, 2024
4e26829
Get-Process: Remove admin requirement for `-IncludeUserName` (#21302)
jborean93 Mar 5, 2024
bc07fc1
Bump Microsoft.CodeAnalysis.Analyzers (#21305)
dependabot[bot] Mar 5, 2024
ad2bf78
Fix a typo in `releaseTools.psm1` (#21306)
eltociear Mar 5, 2024
4e357f1
Fix PowerShell class to support deriving from an abstract class with …
daxian-dbw Mar 13, 2024
d67a82d
Handle the case that `Runspace.DefaultRunspace is null` when logging …
daxian-dbw Mar 14, 2024
4faf527
Make sure both stdout and stderr can be redirected from a native exec…
SeeminglyScience Mar 14, 2024
a332481
Fix typo in ast.cs (#21350)
eltociear Mar 21, 2024
ad7278b
Make sure the assembly/library resolvers are registered at early stag…
daxian-dbw Mar 21, 2024
171d9df
Revert the PR #17856 (Do not preserve temporary results when no need …
daxian-dbw Mar 25, 2024
97e3282
Add file description to `pwsh.exe` (#21352)
SteveL-MSFT Mar 26, 2024
6253933
PowerShell co-ordinated build OneBranch pipeline (#21364)
adityapatwardhan Mar 26, 2024
ff3c847
Fix argument passing in `GlobalToolShim` (#21333)
ForNeVeR Mar 26, 2024
61aeb56
Fix build failure due to missing reference in `GlobalToolShim.cs` (#2…
adityapatwardhan Mar 28, 2024
b23607e
Fix typo in a test (#21337)
testwill Mar 29, 2024
371ceff
Fix `Test-Path -IsValid` to check for invalid path and filename chara…
SteveL-MSFT Apr 2, 2024
9187ece
Fix typo in SessionStateCmdletAPIs.cs (#21413)
eltociear Apr 3, 2024
dafe0a8
Update `PSReadLine` to `v2.3.5` for the next `v7.4.x` servicing relea…
daxian-dbw Apr 3, 2024
94d6231
Multiple fixes in official build pipeline (#21408)
adityapatwardhan Apr 3, 2024
1a52a93
Add back two transitive dependency packages (#21415)
daxian-dbw Apr 4, 2024
b7c2f2d
Verify environment variable for OneBranch before we try to copy (#21441)
adityapatwardhan Apr 5, 2024
9fe339b
Update PSResourceGet version from 1.0.2 to 1.0.4.1 (#21439)
alerickson Apr 5, 2024
d51f35e
fix package build to not check some files for a signature. (#21458)
JamesWTruher Apr 11, 2024
d307df6
Update `metadata.json` and `README.md` (#21454)
SeeminglyScience Apr 12, 2024
14ad05d
Fix grammar in FAQ.md (#21468)
Roshang06 Apr 15, 2024
6e99fd4
Update CHANGELOG for v7.2.19, v7.3.12 and v7.4.2 (#21462)
SeeminglyScience Apr 15, 2024
588dff6
Fix the error when using `Start-Process -Credential` without the admi…
jborean93 Apr 15, 2024
7ad4329
Add `RecommendedAction` to `ConciseView` of the error reporting (#20826)
JustinGrote Apr 15, 2024
7a44d09
Update Engine & Interactive-UX Working Group Member lists (#20991)
kilasuit Apr 15, 2024
5edab1c
Bump `Microsoft.CodeAnalysis.Analyzers` (#21449)
dependabot[bot] Apr 15, 2024
a8457f8
Don't complete parameter name and class member declarations (#21182)
MartinGC94 Apr 15, 2024
d370d7d
Update the doc about how to build PowerShell (#21334)
ForNeVeR Apr 15, 2024
c19b651
[StepSecurity] Apply security best practices (#21480)
step-security-bot Apr 16, 2024
7c6d031
Bump ossf/scorecard-action from 2.0.6 to 2.3.1 (#21485)
dependabot[bot] Apr 18, 2024
0f0b3a6
Bump actions/upload-artifact from 3.1.3 to 4.3.2 (#21501)
dependabot[bot] Apr 18, 2024
6e05e27
Bump github/codeql-action from 2.25.0 to 3.25.1 (#21498)
dependabot[bot] Apr 18, 2024
401b1eb
Bump actions/checkout from 3.6.0 to 4.1.2 (#21482)
dependabot[bot] Apr 18, 2024
870e0ee
Bump actions/dependency-review-action from 2.5.1 to 4.2.5 (#21484)
dependabot[bot] Apr 18, 2024
b968e10
Add a PAT for fetching PMC cli (#21503)
TravisEz13 Apr 18, 2024
4bcc3f4
Fix `[semver]` type to pass semver.org tests (#21401)
SteveL-MSFT Apr 22, 2024
fe38405
Separate DSC configuration parser check for ARM processor (#21395)
dkontyko Apr 22, 2024
b2574ce
Official PowerShell Package pipeline (#21504)
adityapatwardhan Apr 22, 2024
e34a143
Revert to version available on `Nuget` for `Microsoft.CodeAnalysis.An…
adityapatwardhan Apr 23, 2024
2ea9f9f
Use correct signing certificates for RPM and DEBs (#21522)
adityapatwardhan Apr 23, 2024
0c64fe1
Add branch counter variables for daily package builds (#21523)
adityapatwardhan Apr 24, 2024
5efd627
Expand `~` to `$home` on Windows with tab completion (#21529)
SteveL-MSFT Apr 24, 2024
2d23943
Bump github/codeql-action from 3.25.1 to 3.25.3
dependabot[bot] Apr 29, 2024
6fa2b39
Bump actions/checkout from 4.1.2 to 4.1.4
dependabot[bot] Apr 29, 2024
abf7511
Bump actions/upload-artifact from 4.3.2 to 4.3.3
dependabot[bot] Apr 29, 2024
21bc9e8
Bump super-linter/super-linter from 5.7.2 to 6.4.1
dependabot[bot] Apr 29, 2024
d4c65b5
Bump PowerShellGet from 2.2.5 to 2.2.5.1 in /src/Modules (#16)
imatthewtanner Apr 29, 2024
e630224
Bump xunit.runner.visualstudio from 2.5.6 to 2.5.7 (#19)
imatthewtanner Apr 29, 2024
7e4fc05
Merge branch 'master' into dependabot/nuget/Microsoft.CodeAnalysis.CS…
imatthewtanner Apr 29, 2024
4cf8dc5
Bump Microsoft.CodeAnalysis.CSharp from 4.8.0 to 4.9.2 (#20)
imatthewtanner Apr 29, 2024
e361c2f
Bump xunit from 2.6.6 to 2.7.0 (#18)
imatthewtanner Apr 29, 2024
42cb03d
Merge branch 'master' into dependabot/github_actions/github/codeql-ac…
imatthewtanner Apr 29, 2024
e206055
Bump github/codeql-action from 3.25.1 to 3.25.3 (#21)
imatthewtanner Apr 29, 2024
a25cfea
Merge branch 'master' into dependabot/github_actions/actions/checkout…
imatthewtanner Apr 29, 2024
7d4c8bf
Bump actions/checkout from 4.1.2 to 4.1.4 (#22)
imatthewtanner Apr 29, 2024
24705ec
Merge branch 'master' into dependabot/github_actions/actions/upload-a…
imatthewtanner Apr 29, 2024
f10c866
Bump actions/upload-artifact from 4.3.2 to 4.3.3 (#23)
imatthewtanner Apr 29, 2024
f7d2a26
Merge branch 'master' into dependabot/github_actions/super-linter/sup…
imatthewtanner Apr 29, 2024
d423cc5
Bump super-linter/super-linter from 5.7.2 to 6.4.1 (#24)
imatthewtanner Apr 29, 2024
50b7910
Delete .github/workflows/codeql-analysis.yml
imatthewtanner Apr 29, 2024
da1d6ee
Update codeql.yml
imatthewtanner Apr 29, 2024
593df31
Update codeql.yml
imatthewtanner Apr 29, 2024
8289074
Update codeql.yml (#25)
imatthewtanner Apr 29, 2024
7b22402
Delete .github/workflows/codeql.yml
imatthewtanner Apr 29, 2024
169121e
Bump actions/dependency-review-action from 4.2.5 to 4.3.2
dependabot[bot] May 1, 2024
361403c
update wix package install (#21537)
tgauth May 2, 2024
0fee363
Create the Windows.x64 global tool with shim for signing (#21559)
adityapatwardhan May 3, 2024
467538f
Fix generating `OutputType` when running in Constrained Language Mode…
SeeminglyScience May 6, 2024
df56ce2
Use PSScriptRoot to find path to Wix module (#21611)
adityapatwardhan May 6, 2024
0d1c171
Bump actions/checkout from 4.1.4 to 4.1.5
dependabot[bot] May 7, 2024
11a7448
Remember installation options and used them to initialize options for…
reduckted May 7, 2024
d12f467
Bump github/codeql-action from 3.25.3 to 3.25.4
dependabot[bot] May 9, 2024
d564d0f
Bump to .NET 9 preview 3 (#21782)
daxian-dbw May 9, 2024
7941756
Bump ossf/scorecard-action from 2.3.1 to 2.3.3
dependabot[bot] May 10, 2024
0f3fd20
Use feed with Microsoft Wix toolset (#21651)
tgauth May 11, 2024
d6e60d6
Bump actions/dependency-review-action from 4.2.5 to 4.3.2 (#27)
imatthewtanner May 12, 2024
3fa47f3
Bump actions/checkout from 4.1.4 to 4.1.5 (#28)
imatthewtanner May 12, 2024
0bb1c92
Merge branch 'master' into dependabot/github_actions/github/codeql-ac…
imatthewtanner May 12, 2024
fdf56f1
Bump github/codeql-action from 3.25.3 to 3.25.4 (#29)
imatthewtanner May 12, 2024
2d753f2
Merge branch 'master' into dependabot/github_actions/ossf/scorecard-a…
imatthewtanner May 12, 2024
aac086a
Bump ossf/scorecard-action from 2.3.1 to 2.3.3 (#30)
imatthewtanner May 12, 2024
6d527dc
Merge branch 'PowerShell:master' into master
imatthewtanner May 12, 2024
3f81c82
Create codeql.yml
imatthewtanner May 13, 2024
1423072
Bump super-linter/super-linter from 6.4.1 to 6.5.0
dependabot[bot] May 16, 2024
5b0d13e
Bump super-linter/super-linter from 6.4.1 to 6.5.0 (#31)
imatthewtanner May 18, 2024
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
17 changes: 17 additions & 0 deletions .config/suppress.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,17 @@
{
"tool": "Credential Scanner",
"suppressions": [
{
"file": "\\test\\tools\\Modules\\WebListener\\ClientCert.pfx",
"_justification": "Test certificate with private key"
},
{
"file": "\\test\\tools\\Modules\\WebListener\\ServerCert.pfx",
"_justification": "Test certificate with private key"
},
{
"file": "\\test\\powershell\\Modules\\Microsoft.PowerShell.Security\\certificateCommon.psm1",
"_justification": "Test certificate with private key and inline suppression isn't working"
}
]
}
11 changes: 11 additions & 0 deletions .config/tsaoptions.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,11 @@
{
"instanceUrl": "https://msazure.visualstudio.com",
"projectName": "One",
"areaPath": "One\\MGMT\\Compute\\Powershell\\Powershell\\PowerShell Core",
"notificationAliases": [
"[email protected]",
"[email protected]",
"[email protected]",
"[email protected]"
]
}
2 changes: 1 addition & 1 deletion .devcontainer/Dockerfile
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@
# Licensed under the MIT License. See https://go.microsoft.com/fwlink/?linkid=2090316 for license information.
#-------------------------------------------------------------------------------------------------------------

FROM mcr.microsoft.com/powershell/test-deps:ubuntu-18.04
FROM mcr.microsoft.com/powershell/test-deps:ubuntu-18.04@sha256:20154a16708d4a92ebe81393361f27c7567e6553869e89dd6abdd198cc8ba309

# Avoid warnings by switching to noninteractive
ENV DEBIAN_FRONTEND=noninteractive
Expand Down
2 changes: 1 addition & 1 deletion .devcontainer/fedora30/Dockerfile
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@
# Licensed under the MIT License. See https://go.microsoft.com/fwlink/?linkid=2090316 for license information.
#-------------------------------------------------------------------------------------------------------------

FROM mcr.microsoft.com/powershell:preview-fedora-30
FROM mcr.microsoft.com/powershell:preview-fedora-30@sha256:f405d4d60f8d196532da75038c76c052084ef02121f8e2d3852080ff4a230a5a

# Configure apt and install packages
RUN dnf install -y git procps wget findutils \
Expand Down
67 changes: 67 additions & 0 deletions .github/ISSUE_TEMPLATE/WG_member_request.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,67 @@
name: Working Group Member Request
description: Request membership to serve on a PowerShell Working Group
title: Working Group Member Request
labels: [WG-NeedsReview, WG-Cmdlets, WG-Engine, WG-Interactive-Console, WG-Remoting, Needs-Triage]
body:
- type: markdown
attributes:
value: |
## Thank you for your interest in joining a PowerShell Working Group.

### Please complete the following public form to request membership to a PowerShell Working Group.

> [!NOTE]
> Not all Working Groups are accepting new members at this time.
- type : dropdown
id : request_type
validations:
required: true
attributes:
label: Name of Working Group you are requesting to join?
description: >-
Please select the name of the working group you are requesting to join. (Select one)
options:
- "Cmdlets and Modules"
- "Engine"
- "Interactive UX"
- "Remoting"
- type: dropdown
id: time
validations:
required: true
attributes:
label: Can you provide at least 1 hour per week to the Working Group? Note that time commitments will vary per Working Group and decided by its members.
description: >-
Please select Yes or No.
options:
- "Yes"
- "No"
- type: markdown
attributes:
value: |
## ⚠️ This form is public. Do not provide any private or proprietary information. ⚠️
- type: textarea
attributes:
label: Why do you want to join this working group?
description: Please provide a brief description of why you want to join this working group.
placeholder: >
I want to join this working group because...
validations:
required: true
- type: textarea
attributes:
label: What skills do you bring to this working group?
description: Please provide a brief description of what skills you bring to this working group.
placeholder: >
I bring the following skills to this working group...
validations:
required: true
- type: textarea
attributes:
label: Public links to articles, code, or other resources that demonstrate your skills.
description: Please provide public links to articles, code, or other resources that demonstrate your skills.
placeholder: >
I have the following public links to articles, code, or other resources that demonstrate my skills...
validations:
required: true

7 changes: 7 additions & 0 deletions .github/dependabot.yml
Original file line number Diff line number Diff line change
Expand Up @@ -58,3 +58,10 @@ updates:
interval: "daily"
labels:
- "CL-BuildPackaging"

- package-ecosystem: docker
directory: /
schedule:
interval: daily
labels:
- "CL-BuildPackaging"
5 changes: 4 additions & 1 deletion .github/workflows/AssignPrs.yml
Original file line number Diff line number Diff line change
Expand Up @@ -2,14 +2,17 @@ name: Auto Assign PR Maintainer
on:
pull_request:
types: [opened, edited]
permissions:
contents: read

jobs:
run:
runs-on: ubuntu-latest
permissions:
issues: write
pull-requests: write
steps:
- uses: wow-actions/auto-assign@v3
- uses: wow-actions/auto-assign@67fafa03df61d7e5f201734a2fa60d1ab111880d # v3.0.2
with:
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
# using the `org/team_slug` or `/team_slug` syntax to add git team as reviewers
Expand Down
69 changes: 0 additions & 69 deletions .github/workflows/codeql-analysis.yml

This file was deleted.

96 changes: 96 additions & 0 deletions .github/workflows/codeql.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,96 @@
# For most projects, this workflow file will not need changing; you simply need
# to commit it to your repository.
#
# You may wish to alter this file to override the set of languages analyzed,
# or to provide custom queries or build logic.
#
# ******** NOTE ********
# We have attempted to detect the languages in your repository. Please check
# the `language` matrix defined below to confirm you have the correct set of
# supported CodeQL languages.
#
name: "CodeQL"

on:
push:
branches: [ "master", "rule1" ]
pull_request:
branches: [ "master", "rule1" ]
schedule:
- cron: '18 14 * * 3'

jobs:
analyze:
name: Analyze (${{ matrix.language }})
# Runner size impacts CodeQL analysis time. To learn more, please see:
# - https://gh.io/recommended-hardware-resources-for-running-codeql
# - https://gh.io/supported-runners-and-hardware-resources
# - https://gh.io/using-larger-runners (github.com only)
# Consider using larger runners or machines with greater resources for possible analysis time improvements.
runs-on: ${{ (matrix.language == 'swift' && 'macos-latest') || 'ubuntu-latest' }}
timeout-minutes: ${{ (matrix.language == 'swift' && 120) || 360 }}
permissions:
# required for all workflows
security-events: write

# required to fetch internal or private CodeQL packs
packages: read

# only required for workflows in private repositories
actions: read
contents: read

strategy:
fail-fast: false
matrix:
include:
- language: csharp
build-mode: manual
# CodeQL supports the following values keywords for 'language': 'c-cpp', 'csharp', 'go', 'java-kotlin', 'javascript-typescript', 'python', 'ruby', 'swift'
# Use `c-cpp` to analyze code written in C, C++ or both
# Use 'java-kotlin' to analyze code written in Java, Kotlin or both
# Use 'javascript-typescript' to analyze code written in JavaScript, TypeScript or both
# To learn more about changing the languages that are analyzed or customizing the build mode for your analysis,
# see https://docs.github.com/en/code-security/code-scanning/creating-an-advanced-setup-for-code-scanning/customizing-your-advanced-setup-for-code-scanning.
# If you are analyzing a compiled language, you can modify the 'build-mode' for that language to customize how
# your codebase is analyzed, see https://docs.github.com/en/code-security/code-scanning/creating-an-advanced-setup-for-code-scanning/codeql-code-scanning-for-compiled-languages
steps:
- name: Checkout repository
uses: actions/checkout@v4

# Initializes the CodeQL tools for scanning.
- name: Initialize CodeQL
uses: github/codeql-action/init@v3
with:
languages: ${{ matrix.language }}
build-mode: ${{ matrix.build-mode }}
# If you wish to specify custom queries, you can do so here or in a config file.
# By default, queries listed here will override any specified in a config file.
# Prefix the list here with "+" to use these queries and those in the config file.

# For more details on CodeQL's query packs, refer to: https://docs.github.com/en/code-security/code-scanning/automatically-scanning-your-code-for-vulnerabilities-and-errors/configuring-code-scanning#using-queries-in-ql-packs
# queries: security-extended,security-and-quality

# If the analyze step fails for one of the languages you are analyzing with
# "We were unable to automatically build your code", modify the matrix above
# to set the build mode to "manual" for that language. Then modify this step
# to build your code.
# ℹ️ Command-line programs to run using the OS shell.
# 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun
- if: matrix.build-mode == 'manual'
run: |
echo 'If you are using a "manual" build mode for one or more of the' \
'languages you are analyzing, replace this with the commands to build' \
'your code, for example:'
echo ' make bootstrap'
echo ' make release'
steps:
- name: Display the path
shell: pwsh
run: echo ${env:PATH}
exit 1

- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v3
with:
category: "/language:${{matrix.language}}"
2 changes: 1 addition & 1 deletion .github/workflows/createReminders.yml
Original file line number Diff line number Diff line change
Expand Up @@ -16,4 +16,4 @@ jobs:

steps:
- name: check for reminder
uses: agrc/create-reminder-action@v1
uses: agrc/create-reminder-action@922893a5705067719c4c4751843962f56aabf5eb # v1.1.13
22 changes: 22 additions & 0 deletions .github/workflows/dependency-review.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,22 @@
# Dependency Review Action
#
# This Action will scan dependency manifest files that change as part of a Pull Request,
# surfacing known-vulnerable versions of the packages declared or updated in the PR.
# Once installed, if the workflow run is marked as required,
# PRs introducing known-vulnerable packages will be blocked from merging.
#
# Source repository: https://github.com/actions/dependency-review-action
name: 'Dependency Review'
on: [pull_request]

permissions:
contents: read

jobs:
dependency-review:
runs-on: ubuntu-latest
steps:
- name: 'Checkout Repository'
uses: actions/checkout@44c2b7a8a4ea60a981eaca3cf939b5f4305c123b # v4.1.5
- name: 'Dependency Review'
uses: actions/dependency-review-action@0c155c5e8556a497adf53f2c18edabf945ed8e70 # v4.3.2
8 changes: 4 additions & 4 deletions .github/workflows/markdownLink.yml
Original file line number Diff line number Diff line change
Expand Up @@ -12,8 +12,8 @@ jobs:
markdown-link-check:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- uses: gaurav-nelson/github-action-markdown-link-check@v1
- uses: actions/checkout@44c2b7a8a4ea60a981eaca3cf939b5f4305c123b # v4.1.5
- uses: gaurav-nelson/github-action-markdown-link-check@5c5dfc0ac2e225883c0e5f03a85311ec2830d368 # v1
with:
use-quiet-mode: 'yes'
use-verbose-mode: 'yes'
Expand All @@ -26,13 +26,13 @@ jobs:
statuses: write
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- uses: actions/checkout@44c2b7a8a4ea60a981eaca3cf939b5f4305c123b # v4.1.5
with:
# Full git history is needed to get a proper
# list of changed files within `super-linter`
fetch-depth: 0
- name: Lint Markdown
uses: super-linter/super-linter@v5
uses: super-linter/super-linter@56576d491db07c7236b445ab09991ca49d12b0c6 # v6.5.0
env:
VALIDATE_ALL_CODEBASE: false
DEFAULT_BRANCH: master
Expand Down
6 changes: 3 additions & 3 deletions .github/workflows/markdownLinkDaily.yml
Original file line number Diff line number Diff line change
Expand Up @@ -18,15 +18,15 @@ jobs:
if: github.repository == 'PowerShell/PowerShell'
steps:
- name: Checkout
uses: actions/checkout@v4
uses: actions/checkout@44c2b7a8a4ea60a981eaca3cf939b5f4305c123b # v4.1.5
- name: Check Links
uses: gaurav-nelson/github-action-markdown-link-check@v1
uses: gaurav-nelson/github-action-markdown-link-check@5c5dfc0ac2e225883c0e5f03a85311ec2830d368 # v1
with:
use-quiet-mode: 'yes'
use-verbose-mode: 'yes'
config-file: .github/workflows/markdown-link/config.json
- name: Microsoft Teams Notifier
uses: skitionek/notify-microsoft-teams@master
uses: skitionek/notify-microsoft-teams@77cc88b484449e2318245a54c115c5dca0eae4ef # master
if: failure()
with:
webhook_url: ${{ secrets.PS_BUILD_TEAMS_CHANNEL }}
Expand Down
2 changes: 1 addition & 1 deletion .github/workflows/processReminders.yml
Original file line number Diff line number Diff line change
Expand Up @@ -17,4 +17,4 @@ jobs:

steps:
- name: check reminders and notify
uses: agrc/reminder-action@v1
uses: agrc/reminder-action@e59091b4e9705a6108120cb50823108df35b5392 # v1.0.12
Loading