From a1a4fa9d738e04039cbf4a4c5bb2cb65e1a55717 Mon Sep 17 00:00:00 2001 From: "Brandon Waterloo [MSFT]" <36966225+bwateratmsft@users.noreply.github.com> Date: Mon, 25 Nov 2024 11:58:05 -0500 Subject: [PATCH] azure-pipelines: Ignore .vscode-test directory in CG scans (#1824) --- .azure-pipelines/1esmain.yml | 2 ++ azure-pipelines/1esmain.yml | 2 ++ 2 files changed, 4 insertions(+) diff --git a/.azure-pipelines/1esmain.yml b/.azure-pipelines/1esmain.yml index 5e6623e1b4..bf71ec9c07 100644 --- a/.azure-pipelines/1esmain.yml +++ b/.azure-pipelines/1esmain.yml @@ -47,6 +47,8 @@ extends: sdl: credscan: suppressionsFile: $(Build.SourcesDirectory)\.azure-pipelines\compliance\CredScanSuppressions.json + componentgovernance: + ignoreDirectories: $(Build.SourcesDirectory)\**\.vscode-test pool: name: VSEngSS-MicroBuild2022-1ES # Name of your hosted pool image: server2022-microbuildVS2022-1es # Name of the image in your pool. If not specified, first image of the pool is used diff --git a/azure-pipelines/1esmain.yml b/azure-pipelines/1esmain.yml index 78ce2fc467..41aa1715cc 100644 --- a/azure-pipelines/1esmain.yml +++ b/azure-pipelines/1esmain.yml @@ -32,6 +32,8 @@ extends: suppressionFile: $(Build.SourcesDirectory)\.config\guardian\.gdnsuppress credscan: suppressionsFile: $(Build.SourcesDirectory)\.azure-pipelines\compliance\CredScanSuppressions.json + componentgovernance: + ignoreDirectories: $(Build.SourcesDirectory)\.vscode-test # codeql: # enabled: true # TODO: would like to enable only on scheduled builds but CodeQL cannot currently be disabled per https://eng.ms/docs/cloud-ai-platform/devdiv/one-engineering-system-1es/1es-docs/codeql/1es-codeql pool: