ci: add CodeQL code scanning - #2524
josephfusco wants to merge 2 commits into
Conversation
Code scanning has never run on this repository. Analyze JavaScript/ TypeScript and GitHub Actions workflows on pushes and pull requests to canary, plus a weekly scheduled scan. PHP is not supported by CodeQL. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
|
|
You are seeing this message because GitHub Code Scanning has recently been set up for this repository, or this pull request contains the workflow file for the Code Scanning tool. What Enabling Code Scanning Means:
For more information about GitHub Code Scanning, check out the documentation. |
📦 Next.js Bundle Analysis for @faustwp/getting-started-exampleThis analysis was generated by the Next.js Bundle Analysis action. 🤖
|
| Page | Size (compressed) |
|---|---|
global |
247.07 KB (🟡 +12 B) |
Details
The global bundle is the javascript bundle that loads alongside every page. It is in its own category because its impact is much higher - an increase to its size means that every page on your website loads slower, and a decrease means every page loads faster.
Any third party scripts you have added directly to your app using the <script> tag are not accounted for in this analysis
If you want further insight into what is behind the changes, give @next/bundle-analyzer a try!
Pull request scans only report alerts a change introduces, so findings in existing code first show up after this merges and canary is scanned, and PHP stays unscanned because CodeQL only has it in beta.
Use of AI Tools
AI assistance: Yes
Tool(s): Claude Code
Model(s): Claude Opus 5.5
Used for: Assisting with the workflow.