summaryrefslogtreecommitdiffstats
path: root/.codeql-config.yml
blob: 1311657c77a2f96d538a2a9274a009e1c4a57762 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
name: "Cryptsetup CodeQL config"

query-filters:
- exclude:
     id: cpp/fixme-comment
- exclude:
     id: cpp/empty-block
- exclude:
     id: cpp/poorly-documented-function
- exclude:
     id: cpp/loop-variable-changed
- exclude:
     id: cpp/empty-if
- exclude:
     id: cpp/long-switch
- exclude:
     id: cpp/complex-condition
- exclude:
     id: cpp/commented-out-code

# These produce many false positives
- exclude:
     id: cpp/uninitialized-local
- exclude:
     id: cpp/path-injection
- exclude:
     id: cpp/missing-check-scanf

# CodeQL should understand coverity [toctou] comments
- exclude:
     id: cpp/toctou-race-condition