Block or Report
Block or report asgerf
Report abuse
Contact GitHub support about this user’s behavior. Learn more about reporting abuse.
Report abusePopular repositories
-
-
dts-tree-sitter Public
Generate TypeScript .d.ts files for using tree-sitter grammars.
-
-
851 contributions in the last year
Less
More
Contribution activity
May 2023
Created 29 commits in 1 repository
Created a pull request in github/codeql that received 6 comments
JS: Add sources and sinks related to GitHub Actions
Adds sources and sinks based on this PR from @R3x with comments from @JarLob. This PR is essentially a port of that PR with the following differences:
+220
−0
•
6
comments
Opened 4 other pull requests in 1 repository
Reviewed 12 pull requests in 1 repository
github/codeql
12 pull requests
- Ruby: Allow for flow out of callbacks passed to summarized methods in type tracking
- JS: require arguments to be shell interpreted to be flagged by indirect-command-injection
- Ruby: Allow for flow through callbacks to summarized methods in type tracking
- JS: update MaD sink kinds
-
Ruby: Include
selfparameters in type tracking flow-through logic - JS/Ruby/QL/Python: sync dbscheme fragments
-
JS: fixup in the qhelp for
js/prototype-polluting-assignment - JS: Add more sources, more unit tests, fixes to the GitHub Actions injection query
- JavaScript: Use gender-neutral language in qhelp for js/user-controlled-bypass
- JS: Add pragma[only_bind_out] to Locatable::toString() calls
- JS: Allow NonKeyCiphers to include truncated SHA-512 MDs in Forge JS libr…
- JS: Add a few more DOM element sources




