Skip to content

Commit a576c3d

Browse files
authored
Remove usage notes from OWASP2025-CodeQL.md
Removed usage notes section detailing language support, custom queries, query suites, and running scans.
1 parent ba566ab commit a576c3d

File tree

1 file changed

+0
-18
lines changed

1 file changed

+0
-18
lines changed

code-scanning-guides/OWASP2025-CodeQL.md

Lines changed: 0 additions & 18 deletions
Original file line numberDiff line numberDiff line change
@@ -1107,24 +1107,6 @@ This document provides a mapping between the OWASP Top 10 2025 vulnerabilities a
11071107

11081108
---
11091109

1110-
## Usage Notes
1111-
1112-
1. **Language Support**: Not all queries are available for all languages. Check the [CodeQL documentation](https://codeql.github.com/codeql-query-help/full-cwe/) for language-specific availability.
1113-
1114-
2. **Custom Queries**: Some OWASP vulnerabilities may require custom CodeQL queries if specific CWEs aren't covered.
1115-
1116-
3. **Query Suites**: Consider using CodeQL security query suites that include multiple related queries:
1117-
- `security-extended`: Comprehensive security analysis
1118-
- `security-and-quality`: Security plus code quality checks
1119-
- `security-experimental`: Includes experimental security queries
1120-
1121-
4. **Running Scans**: Example command for running CodeQL security analysis:
1122-
```bash
1123-
codeql database analyze <database> \
1124-
--format=sarif-latest \
1125-
--output=results.sarif \
1126-
<language>-security-extended.qls
1127-
```
11281110

11291111
## Summary Statistics
11301112

0 commit comments

Comments
 (0)