diff --git a/ql/lib/ext/generated/composite-actions/actions_actions-runner-controller.model.yml b/ql/lib/ext/generated/composite-actions/actions_actions-runner-controller.model.yml new file mode 100644 index 00000000000..4bc9d5ed771 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/actions_actions-runner-controller.model.yml @@ -0,0 +1,14 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["actions/actions-runner-controller", "*", "inputs.image-tag", "code-injection", "generated"] + - ["actions/actions-runner-controller", "*", "inputs.image-name", "code-injection", "generated"] + - ["actions/actions-runner-controller", "*", "inputs.arc-controller-namespace", "code-injection", "generated"] + - ["actions/actions-runner-controller", "*", "inputs.arc-namespace", "code-injection", "generated"] + - ["actions/actions-runner-controller", "*", "inputs.arc-name", "code-injection", "generated"] + - ["actions/actions-runner-controller", "*", "inputs.repo-name", "code-injection", "generated"] + - ["actions/actions-runner-controller", "*", "inputs.repo-owner", "code-injection", "generated"] + - ["actions/actions-runner-controller", "*", "inputs.workflow-file", "code-injection", "generated"] + - ["actions/actions-runner-controller", "*", "inputs.auth-token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/adap_flower.model.yml b/ql/lib/ext/generated/composite-actions/adap_flower.model.yml new file mode 100644 index 00000000000..3ce17568490 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/adap_flower.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["adap/flower", "*", "inputs.poetry-version", "code-injection", "generated"] + - ["adap/flower", "*", "inputs.setuptools-version", "code-injection", "generated"] + - ["adap/flower", "*", "inputs.pip-version", "code-injection", "generated"] + - ["adap/flower", "*", "inputs.python-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/agoric_agoric-sdk.model.yml b/ql/lib/ext/generated/composite-actions/agoric_agoric-sdk.model.yml new file mode 100644 index 00000000000..80a23352e55 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/agoric_agoric-sdk.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["agoric/agoric-sdk", "*", "inputs.xsnap-random-init", "code-injection", "generated"] + - ["agoric/agoric-sdk", "*", "inputs.path", "code-injection", "generated"] + - ["agoric/agoric-sdk", "*", "inputs.ignore-endo-branch", "code-injection", "generated"] + - ["agoric/agoric-sdk", "*", "inputs.codecov-token", "code-injection", "generated"] + - ["agoric/agoric-sdk", "*", "inputs.datadog-token", "code-injection", "generated"] + - ["agoric/agoric-sdk", "*", "inputs.datadog-site", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/airbnb_lottie-ios.model.yml b/ql/lib/ext/generated/composite-actions/airbnb_lottie-ios.model.yml new file mode 100644 index 00000000000..441c8ebcd52 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/airbnb_lottie-ios.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["airbnb/lottie-ios", "*", "inputs.xcode", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/airbytehq_airbyte.model.yml b/ql/lib/ext/generated/composite-actions/airbytehq_airbyte.model.yml new file mode 100644 index 00000000000..d4e8a2c32bf --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/airbytehq_airbyte.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["airbytehq/airbyte", "*", "inputs.options", "code-injection", "generated"] + - ["airbytehq/airbyte", "*", "inputs.subcommand", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/amazon-ion_ion-java.model.yml b/ql/lib/ext/generated/composite-actions/amazon-ion_ion-java.model.yml new file mode 100644 index 00000000000..ce3ed699b9a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/amazon-ion_ion-java.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["amazon-ion/ion-java", "*", "inputs.project_version", "code-injection", "generated"] + - ["amazon-ion/ion-java", "*", "inputs.repo", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/anchore_grype.model.yml b/ql/lib/ext/generated/composite-actions/anchore_grype.model.yml new file mode 100644 index 00000000000..8b62fe8e0aa --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/anchore_grype.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["anchore/grype", "*", "inputs.bootstrap-apt-packages", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/anchore_syft.model.yml b/ql/lib/ext/generated/composite-actions/anchore_syft.model.yml new file mode 100644 index 00000000000..946faca35c9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/anchore_syft.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["anchore/syft", "*", "inputs.bootstrap-apt-packages", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/angular_dev-infra.model.yml b/ql/lib/ext/generated/composite-actions/angular_dev-infra.model.yml new file mode 100644 index 00000000000..b68c9462c1b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/angular_dev-infra.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["angular/dev-infra", "*", "inputs.firebase-public-dir", "code-injection", "generated"] + - ["angular/dev-infra", "*", "inputs.workflow-artifact-name", "code-injection", "generated"] + - ["angular/dev-infra", "*", "inputs.artifact-build-revision", "code-injection", "generated"] + - ["angular/dev-infra", "*", "inputs.pull-number", "code-injection", "generated"] + - ["angular/dev-infra", "*", "inputs.deploy-directory", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ansible_ansible-lint.model.yml b/ql/lib/ext/generated/composite-actions/ansible_ansible-lint.model.yml new file mode 100644 index 00000000000..aedefc9ee02 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ansible_ansible-lint.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ansible/ansible-lint", "*", "inputs.args", "code-injection", "generated"] + - ["ansible/ansible-lint", "*", "inputs.working_directory", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ansible_awx.model.yml b/ql/lib/ext/generated/composite-actions/ansible_awx.model.yml new file mode 100644 index 00000000000..36f7a18e198 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ansible_awx.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ansible/awx", "*", "inputs.log-filename", "code-injection", "generated"] + - ["ansible/awx", "*", "inputs.github-token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_arrow-datafusion.model.yml b/ql/lib/ext/generated/composite-actions/apache_arrow-datafusion.model.yml new file mode 100644 index 00000000000..a1d324f44bd --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_arrow-datafusion.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/arrow-datafusion", "*", "inputs.rust-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_arrow-rs.model.yml b/ql/lib/ext/generated/composite-actions/apache_arrow-rs.model.yml new file mode 100644 index 00000000000..53142801fec --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_arrow-rs.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/arrow-rs", "*", "inputs.target", "code-injection", "generated"] + - ["apache/arrow-rs", "*", "inputs.rust-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_arrow.model.yml b/ql/lib/ext/generated/composite-actions/apache_arrow.model.yml new file mode 100644 index 00000000000..5170beb3a7a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_arrow.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/arrow", "*", "inputs.upload", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_bookkeeper.model.yml b/ql/lib/ext/generated/composite-actions/apache_bookkeeper.model.yml new file mode 100644 index 00000000000..1fabdd9085b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_bookkeeper.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/bookkeeper", "*", "inputs.mode", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_brpc.model.yml b/ql/lib/ext/generated/composite-actions/apache_brpc.model.yml new file mode 100644 index 00000000000..370d3c6954e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_brpc.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/brpc", "*", "inputs.options", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_camel-k.model.yml b/ql/lib/ext/generated/composite-actions/apache_camel-k.model.yml new file mode 100644 index 00000000000..ac0156b719f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_camel-k.model.yml @@ -0,0 +1,17 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/camel-k", "*", "inputs.test-suite", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.image-version", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.image-registry-insecure", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.image-name", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.image-registry-host", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.catalog-source-namespace", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.catalog-source-name", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.image-namespace", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.version", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.otlp-collector-image-version", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.otlp-collector-image-name", "code-injection", "generated"] + - ["apache/camel-k", "*", "inputs.global-operator-namespace", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_camel.model.yml b/ql/lib/ext/generated/composite-actions/apache_camel.model.yml new file mode 100644 index 00000000000..9ee197ed884 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_camel.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/camel", "*", "inputs.end-commit", "code-injection", "generated"] + - ["apache/camel", "*", "inputs.start-commit", "code-injection", "generated"] + - ["apache/camel", "*", "inputs.distribution", "code-injection", "generated"] + - ["apache/camel", "*", "inputs.version", "code-injection", "generated"] + - ["apache/camel", "*", "inputs.pr-id", "code-injection", "generated"] + - ["apache/camel", "*", "inputs.mode", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_flink.model.yml b/ql/lib/ext/generated/composite-actions/apache_flink.model.yml new file mode 100644 index 00000000000..99a1e4cec71 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_flink.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/flink", "*", "inputs.maven-parameters", "code-injection", "generated"] + - ["apache/flink", "*", "inputs.env", "code-injection", "generated"] + - ["apache/flink", "*", "inputs.target_directory", "code-injection", "generated"] + - ["apache/flink", "*", "inputs.source_directory", "code-injection", "generated"] + - ["apache/flink", "*", "inputs.jdk_version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_nuttx.model.yml b/ql/lib/ext/generated/composite-actions/apache_nuttx.model.yml new file mode 100644 index 00000000000..d2a6dbd4929 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_nuttx.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/nuttx", "*", "inputs.haskell", "code-injection", "generated"] + - ["apache/nuttx", "*", "inputs.dotnet", "code-injection", "generated"] + - ["apache/nuttx", "*", "inputs.android", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_opendal.model.yml b/ql/lib/ext/generated/composite-actions/apache_opendal.model.yml new file mode 100644 index 00000000000..13a9ff475b9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_opendal.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/opendal", "*", "inputs.feature", "code-injection", "generated"] + - ["apache/opendal", "*", "inputs.setup", "code-injection", "generated"] + - ["apache/opendal", "*", "inputs.service", "code-injection", "generated"] + - ["apache/opendal", "*", "inputs.target", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_pekko.model.yml b/ql/lib/ext/generated/composite-actions/apache_pekko.model.yml new file mode 100644 index 00000000000..a173154bec0 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_pekko.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/pekko", "*", "inputs.upload", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_pulsar-helm-chart.model.yml b/ql/lib/ext/generated/composite-actions/apache_pulsar-helm-chart.model.yml new file mode 100644 index 00000000000..f7a5017d2fb --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_pulsar-helm-chart.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/pulsar-helm-chart", "*", "inputs.limit-access-to-users", "code-injection", "generated"] + - ["apache/pulsar-helm-chart", "*", "inputs.limit-access-to-actor", "code-injection", "generated"] + - ["apache/pulsar-helm-chart", "*", "inputs.secure-access", "code-injection", "generated"] + - ["apache/pulsar-helm-chart", "*", "inputs.action", "code-injection", "generated"] + - ["apache/pulsar-helm-chart", "*", "inputs.yamale_version", "code-injection", "generated"] + - ["apache/pulsar-helm-chart", "*", "inputs.yamllint_version", "code-injection", "generated"] + - ["apache/pulsar-helm-chart", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/apache_superset.model.yml b/ql/lib/ext/generated/composite-actions/apache_superset.model.yml new file mode 100644 index 00000000000..1bcf118810f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/apache_superset.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["apache/superset", "*", "inputs.requirements-type", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/appflowy-io_appflowy.model.yml b/ql/lib/ext/generated/composite-actions/appflowy-io_appflowy.model.yml new file mode 100644 index 00000000000..fb210d5af55 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/appflowy-io_appflowy.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["appflowy-io/appflowy", "*", "inputs.test_path", "code-injection", "generated"] + - ["appflowy-io/appflowy", "*", "inputs.flutter_profile", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/aptos-labs_aptos-core.model.yml b/ql/lib/ext/generated/composite-actions/aptos-labs_aptos-core.model.yml new file mode 100644 index 00000000000..77554b9872e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/aptos-labs_aptos-core.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["aptos-labs/aptos-core", "*", "inputs.GIT_CREDENTIALS", "code-injection", "generated"] + - ["aptos-labs/aptos-core", "*", "inputs.GCP_DOCKER_ARTIFACT_REPO", "code-injection", "generated"] + - ["aptos-labs/aptos-core", "*", "inputs.IMAGE_TAG", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/archivesspace_archivesspace.model.yml b/ql/lib/ext/generated/composite-actions/archivesspace_archivesspace.model.yml new file mode 100644 index 00000000000..7fc1eaaca48 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/archivesspace_archivesspace.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["archivesspace/archivesspace", "*", "inputs.mysql-connector-url", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/armadaproject_armada.model.yml b/ql/lib/ext/generated/composite-actions/armadaproject_armada.model.yml new file mode 100644 index 00000000000..921095f8a38 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/armadaproject_armada.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["armadaproject/armada", "*", "inputs.tox-env", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/armbian_build.model.yml b/ql/lib/ext/generated/composite-actions/armbian_build.model.yml new file mode 100644 index 00000000000..e8dba39c742 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/armbian_build.model.yml @@ -0,0 +1,14 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["armbian/build", "*", "inputs.armbian_pgp_password", "code-injection", "generated"] + - ["armbian/build", "*", "inputs.armbian_extensions", "code-injection", "generated"] + - ["armbian/build", "*", "inputs.armbian_release", "code-injection", "generated"] + - ["armbian/build", "*", "inputs.armbian_kernel_branch", "code-injection", "generated"] + - ["armbian/build", "*", "inputs.armbian_board", "code-injection", "generated"] + - ["armbian/build", "*", "inputs.armbian_target", "code-injection", "generated"] + - ["armbian/build", "*", "inputs.armbian_branch", "code-injection", "generated"] + - ["armbian/build", "*", "inputs.armbian_ui", "code-injection", "generated"] + - ["armbian/build", "*", "inputs.armbian_version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/auth0_auth0-java.model.yml b/ql/lib/ext/generated/composite-actions/auth0_auth0-java.model.yml new file mode 100644 index 00000000000..69970d3419b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/auth0_auth0-java.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["auth0/auth0-java", "*", "inputs.signing-password", "code-injection", "generated"] + - ["auth0/auth0-java", "*", "inputs.signing-key", "code-injection", "generated"] + - ["auth0/auth0-java", "*", "inputs.ossr-password", "code-injection", "generated"] + - ["auth0/auth0-java", "*", "inputs.ossr-username", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/auth0_auth0.net.model.yml b/ql/lib/ext/generated/composite-actions/auth0_auth0.net.model.yml new file mode 100644 index 00000000000..b57797cc643 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/auth0_auth0.net.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["auth0/auth0.net", "*", "inputs.nuget-token", "code-injection", "generated"] + - ["auth0/auth0.net", "*", "inputs.nuget-directory", "code-injection", "generated"] + - ["auth0/auth0.net", "*", "inputs.project-paths", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/auth0_auth0.swift.model.yml b/ql/lib/ext/generated/composite-actions/auth0_auth0.swift.model.yml new file mode 100644 index 00000000000..08b65cea6d7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/auth0_auth0.swift.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["auth0/auth0.swift", "*", "inputs.platform", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/autogluon_autogluon.model.yml b/ql/lib/ext/generated/composite-actions/autogluon_autogluon.model.yml new file mode 100644 index 00000000000..453e60f3595 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/autogluon_autogluon.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["autogluon/autogluon", "*", "inputs.submodule-to-test", "code-injection", "generated"] + - ["autogluon/autogluon", "*", "inputs.command", "code-injection", "generated"] + - ["autogluon/autogluon", "*", "inputs.work-dir", "code-injection", "generated"] + - ["autogluon/autogluon", "*", "inputs.job-name", "code-injection", "generated"] + - ["autogluon/autogluon", "*", "inputs.job-type", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/avaiga_taipy.model.yml b/ql/lib/ext/generated/composite-actions/avaiga_taipy.model.yml new file mode 100644 index 00000000000..012802b8006 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/avaiga_taipy.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["avaiga/taipy", "*", "inputs.python-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/aws-amplify_amplify-cli.model.yml b/ql/lib/ext/generated/composite-actions/aws-amplify_amplify-cli.model.yml new file mode 100644 index 00000000000..a397a77f6dc --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/aws-amplify_amplify-cli.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["aws-amplify/amplify-cli", "*", "inputs.cli-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/aws_amazon-vpc-cni-k8s.model.yml b/ql/lib/ext/generated/composite-actions/aws_amazon-vpc-cni-k8s.model.yml new file mode 100644 index 00000000000..15de610c981 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/aws_amazon-vpc-cni-k8s.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["aws/amazon-vpc-cni-k8s", "*", "inputs.go-package", "code-injection", "generated"] + - ["aws/amazon-vpc-cni-k8s", "*", "inputs.work-dir", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/aws_karpenter-provider-aws.model.yml b/ql/lib/ext/generated/composite-actions/aws_karpenter-provider-aws.model.yml new file mode 100644 index 00000000000..ad6e7e806cd --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/aws_karpenter-provider-aws.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["aws/karpenter-provider-aws", "*", "inputs.account_id", "code-injection", "generated"] + - ["aws/karpenter-provider-aws", "*", "inputs.cluster_name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/awslabs_amazon-eks-ami.model.yml b/ql/lib/ext/generated/composite-actions/awslabs_amazon-eks-ami.model.yml new file mode 100644 index 00000000000..67631102d71 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/awslabs_amazon-eks-ami.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["awslabs/amazon-eks-ami", "*", "inputs.max_resource_age_duration", "code-injection", "generated"] + - ["awslabs/amazon-eks-ami", "*", "inputs.aws_region", "code-injection", "generated"] + - ["awslabs/amazon-eks-ami", "*", "inputs.ami_id", "code-injection", "generated"] + - ["awslabs/amazon-eks-ami", "*", "inputs.k8s_version", "code-injection", "generated"] + - ["awslabs/amazon-eks-ami", "*", "inputs.os_distro", "code-injection", "generated"] + - ["awslabs/amazon-eks-ami", "*", "inputs.additional_arguments", "code-injection", "generated"] + - ["awslabs/amazon-eks-ami", "*", "inputs.build_id", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/awslabs_aws-lambda-rust-runtime.model.yml b/ql/lib/ext/generated/composite-actions/awslabs_aws-lambda-rust-runtime.model.yml new file mode 100644 index 00000000000..098d7c139fa --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/awslabs_aws-lambda-rust-runtime.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["awslabs/aws-lambda-rust-runtime", "*", "inputs.package", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/azerothcore_azerothcore-wotlk.model.yml b/ql/lib/ext/generated/composite-actions/azerothcore_azerothcore-wotlk.model.yml new file mode 100644 index 00000000000..def12e48741 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/azerothcore_azerothcore-wotlk.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["azerothcore/azerothcore-wotlk", "*", "inputs.CXX", "code-injection", "generated"] + - ["azerothcore/azerothcore-wotlk", "*", "inputs.CC", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/azure_azure-datafactory.model.yml b/ql/lib/ext/generated/composite-actions/azure_azure-datafactory.model.yml new file mode 100644 index 00000000000..768db7317cc --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/azure_azure-datafactory.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["azure/azure-datafactory", "*", "inputs.directory", "code-injection", "generated"] + - ["azure/azure-datafactory", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/badges_shields.model.yml b/ql/lib/ext/generated/composite-actions/badges_shields.model.yml new file mode 100644 index 00000000000..55218009c02 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/badges_shields.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["badges/shields", "*", "inputs.npm-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/balena-io_etcher.model.yml b/ql/lib/ext/generated/composite-actions/balena-io_etcher.model.yml new file mode 100644 index 00000000000..17ec5471e85 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/balena-io_etcher.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["balena-io/etcher", "*", "inputs.VERBOSE", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/balena-os_balena-engine.model.yml b/ql/lib/ext/generated/composite-actions/balena-os_balena-engine.model.yml new file mode 100644 index 00000000000..55cd8b18241 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/balena-os_balena-engine.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["balena-os/balena-engine", "*", "inputs.VERBOSE", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ben-manes_caffeine.model.yml b/ql/lib/ext/generated/composite-actions/ben-manes_caffeine.model.yml new file mode 100644 index 00000000000..328d58d9e42 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ben-manes_caffeine.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ben-manes/caffeine", "*", "inputs.attempt-delay", "code-injection", "generated"] + - ["ben-manes/caffeine", "*", "inputs.attempt-limit", "code-injection", "generated"] + - ["ben-manes/caffeine", "*", "inputs.arguments", "code-injection", "generated"] + - ["ben-manes/caffeine", "*", "inputs.graal", "code-injection", "generated"] + - ["ben-manes/caffeine", "*", "inputs.java", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/bokeh_bokeh.model.yml b/ql/lib/ext/generated/composite-actions/bokeh_bokeh.model.yml new file mode 100644 index 00000000000..836bda1041a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/bokeh_bokeh.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["bokeh/bokeh", "*", "inputs.test-env", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/botpress_botpress.model.yml b/ql/lib/ext/generated/composite-actions/botpress_botpress.model.yml new file mode 100644 index 00000000000..b6f9ee027f1 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/botpress_botpress.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["botpress/botpress", "*", "inputs.tilt_cmd", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/braintree_braintree-android-drop-in.model.yml b/ql/lib/ext/generated/composite-actions/braintree_braintree-android-drop-in.model.yml new file mode 100644 index 00000000000..2f6458219b6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/braintree_braintree-android-drop-in.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["braintree/braintree-android-drop-in", "*", "inputs.version", "code-injection", "generated"] + - ["braintree/braintree-android-drop-in", "*", "inputs.signing_file_path", "code-injection", "generated"] + - ["braintree/braintree-android-drop-in", "*", "inputs.signing_key_file", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/braintree_braintree_android.model.yml b/ql/lib/ext/generated/composite-actions/braintree_braintree_android.model.yml new file mode 100644 index 00000000000..374a13ccd82 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/braintree_braintree_android.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["braintree/braintree/android", "*", "inputs.version", "code-injection", "generated"] + - ["braintree/braintree/android", "*", "inputs.module", "code-injection", "generated"] + - ["braintree/braintree/android", "*", "inputs.signing_file_path", "code-injection", "generated"] + - ["braintree/braintree/android", "*", "inputs.signing_key_file", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/broadinstitute_gatk.model.yml b/ql/lib/ext/generated/composite-actions/broadinstitute_gatk.model.yml new file mode 100644 index 00000000000..fb4608ec70b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/broadinstitute_gatk.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["broadinstitute/gatk", "*", "inputs.identifier", "code-injection", "generated"] + - ["broadinstitute/gatk", "*", "inputs.repo-path", "code-injection", "generated"] + - ["broadinstitute/gatk", "*", "inputs.CROMWELL_VERSION", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/canonical_multipass.model.yml b/ql/lib/ext/generated/composite-actions/canonical_multipass.model.yml new file mode 100644 index 00000000000..3a6a4575d30 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/canonical_multipass.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["canonical/multipass", "*", "inputs.release-tag-re", "code-injection", "generated"] + - ["canonical/multipass", "*", "inputs.release-branch-re", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/chia-network_actions.model.yml b/ql/lib/ext/generated/composite-actions/chia-network_actions.model.yml new file mode 100644 index 00000000000..d21c609e5ed --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/chia-network_actions.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["chia-network/actions", "*", "inputs.keypair_path", "code-injection", "generated"] + - ["chia-network/actions", "*", "inputs.role_name", "code-injection", "generated"] + - ["chia-network/actions", "*", "inputs.backend_name", "code-injection", "generated"] + - ["chia-network/actions", "*", "inputs.vault_url", "code-injection", "generated"] + - ["chia-network/actions", "*", "inputs.ttl", "code-injection", "generated"] + - ["chia-network/actions", "*", "inputs.vault_token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/chia-network_chia-blockchain.model.yml b/ql/lib/ext/generated/composite-actions/chia-network_chia-blockchain.model.yml new file mode 100644 index 00000000000..76c92f51d26 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/chia-network_chia-blockchain.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["chia-network/chia-blockchain", "*", "inputs.command-prefix", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/chipsalliance_chisel.model.yml b/ql/lib/ext/generated/composite-actions/chipsalliance_chisel.model.yml new file mode 100644 index 00000000000..dc48b2e8d20 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/chipsalliance_chisel.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["chipsalliance/chisel", "*", "inputs.version", "code-injection", "generated"] + - ["chipsalliance/chisel", "*", "inputs.file-name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/chocobozzz_peertube.model.yml b/ql/lib/ext/generated/composite-actions/chocobozzz_peertube.model.yml new file mode 100644 index 00000000000..b46b5592ac5 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/chocobozzz_peertube.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["chocobozzz/peertube", "*", "inputs.deployKey", "code-injection", "generated"] + - ["chocobozzz/peertube", "*", "inputs.knownHosts", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/cilium_cilium-cli.model.yml b/ql/lib/ext/generated/composite-actions/cilium_cilium-cli.model.yml new file mode 100644 index 00000000000..a38482ba696 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/cilium_cilium-cli.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["cilium/cilium-cli", "*", "inputs.binary-name", "code-injection", "generated"] + - ["cilium/cilium-cli", "*", "inputs.binary-dir", "code-injection", "generated"] + - ["cilium/cilium-cli", "*", "inputs.ci-version", "code-injection", "generated"] + - ["cilium/cilium-cli", "*", "inputs.release-version", "code-injection", "generated"] + - ["cilium/cilium-cli", "*", "inputs.repository", "code-injection", "generated"] + - ["cilium/cilium-cli", "*", "inputs.go-mod-directory", "code-injection", "generated"] + - ["cilium/cilium-cli", "*", "inputs.local-path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/cilium_cilium.model.yml b/ql/lib/ext/generated/composite-actions/cilium_cilium.model.yml new file mode 100644 index 00000000000..ca1bf2f894f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/cilium_cilium.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["cilium/cilium", "*", "inputs.job-name", "code-injection", "generated"] + - ["cilium/cilium", "*", "inputs.lb-acceleration", "code-injection", "generated"] + - ["cilium/cilium", "*", "inputs.mutual-auth", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/citusdata_citus.model.yml b/ql/lib/ext/generated/composite-actions/citusdata_citus.model.yml new file mode 100644 index 00000000000..4a46ca788e5 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/citusdata_citus.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["citusdata/citus", "*", "inputs.flags", "code-injection", "generated"] + - ["citusdata/citus", "*", "inputs.pg_major", "code-injection", "generated"] + - ["citusdata/citus", "*", "inputs.count", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/clerk_javascript.model.yml b/ql/lib/ext/generated/composite-actions/clerk_javascript.model.yml new file mode 100644 index 00000000000..b1c5270165b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/clerk_javascript.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["clerk/javascript", "*", "inputs.auth-email", "code-injection", "generated"] + - ["clerk/javascript", "*", "inputs.auth-password", "code-injection", "generated"] + - ["clerk/javascript", "*", "inputs.auth-user", "code-injection", "generated"] + - ["clerk/javascript", "*", "inputs.registry", "code-injection", "generated"] + - ["clerk/javascript", "*", "inputs.publish-cmd", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/cloud-custodian_cloud-custodian.model.yml b/ql/lib/ext/generated/composite-actions/cloud-custodian_cloud-custodian.model.yml new file mode 100644 index 00000000000..9fcaa3fff76 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/cloud-custodian_cloud-custodian.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["cloud-custodian/cloud-custodian", "*", "inputs.poetry-version", "code-injection", "generated"] + - ["cloud-custodian/cloud-custodian", "*", "inputs.bucket-url", "code-injection", "generated"] + - ["cloud-custodian/cloud-custodian", "*", "inputs.docs-dir", "code-injection", "generated"] + - ["cloud-custodian/cloud-custodian", "*", "inputs.name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/cloudflare_workers-sdk.model.yml b/ql/lib/ext/generated/composite-actions/cloudflare_workers-sdk.model.yml new file mode 100644 index 00000000000..f21c3c1f9de --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/cloudflare_workers-sdk.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["cloudflare/workers-sdk", "*", "inputs.package-manager", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/cloudfoundry_cloud_controller_ng.model.yml b/ql/lib/ext/generated/composite-actions/cloudfoundry_cloud_controller_ng.model.yml new file mode 100644 index 00000000000..7ff68860cf8 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/cloudfoundry_cloud_controller_ng.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["cloudfoundry/cloud_controller/ng", "*", "inputs.BOSH_CLI_VERSION", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/coder_coder.model.yml b/ql/lib/ext/generated/composite-actions/coder_coder.model.yml new file mode 100644 index 00000000000..9e3d5bd41e3 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/coder_coder.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["coder/coder", "*", "inputs.api-key", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/coil-kt_coil.model.yml b/ql/lib/ext/generated/composite-actions/coil-kt_coil.model.yml new file mode 100644 index 00000000000..63373bd78a7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/coil-kt_coil.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["coil-kt/coil", "*", "inputs.api-level", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/commaai_openpilot.model.yml b/ql/lib/ext/generated/composite-actions/commaai_openpilot.model.yml new file mode 100644 index 00000000000..529614b8d79 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/commaai_openpilot.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["commaai/openpilot", "*", "inputs.sleep_time", "code-injection", "generated"] + - ["commaai/openpilot", "*", "inputs.docker_hub_pat", "code-injection", "generated"] + - ["commaai/openpilot", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/conan-io_conan-center-index.model.yml b/ql/lib/ext/generated/composite-actions/conan-io_conan-center-index.model.yml new file mode 100644 index 00000000000..ce3ce91d773 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/conan-io_conan-center-index.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["conan-io/conan-center-index", "*", "inputs.files", "code-injection", "generated"] + - ["conan-io/conan-center-index", "*", "inputs.reviewers", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/corretto_corretto-8.model.yml b/ql/lib/ext/generated/composite-actions/corretto_corretto-8.model.yml new file mode 100644 index 00000000000..ececaa835e9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/corretto_corretto-8.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["corretto/corretto-8", "*", "inputs.version-branch", "code-injection", "generated"] + - ["corretto/corretto-8", "*", "inputs.upstream", "code-injection", "generated"] + - ["corretto/corretto-8", "*", "inputs.merge-branch", "code-injection", "generated"] + - ["corretto/corretto-8", "*", "inputs.local-branch", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/cosmos_cosmos-sdk.model.yml b/ql/lib/ext/generated/composite-actions/cosmos_cosmos-sdk.model.yml new file mode 100644 index 00000000000..0c19019e4f3 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/cosmos_cosmos-sdk.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["cosmos/cosmos-sdk", "*", "inputs.github_token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/coturn_coturn.model.yml b/ql/lib/ext/generated/composite-actions/coturn_coturn.model.yml new file mode 100644 index 00000000000..67a21fc2e86 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/coturn_coturn.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["coturn/coturn", "*", "inputs.SUDO", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/crunchydata_postgres-operator.model.yml b/ql/lib/ext/generated/composite-actions/crunchydata_postgres-operator.model.yml new file mode 100644 index 00000000000..3f0c5e645de --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/crunchydata_postgres-operator.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["crunchydata/postgres-operator", "*", "inputs.k3s-channel", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/cvc5_cvc5.model.yml b/ql/lib/ext/generated/composite-actions/cvc5_cvc5.model.yml new file mode 100644 index 00000000000..470109b5e85 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/cvc5_cvc5.model.yml @@ -0,0 +1,15 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["cvc5/cvc5", "*", "inputs.build-dir", "code-injection", "generated"] + - ["cvc5/cvc5", "*", "inputs.macos-target", "code-injection", "generated"] + - ["cvc5/cvc5", "*", "inputs.check-examples", "code-injection", "generated"] + - ["cvc5/cvc5", "*", "inputs.check-python-bindings", "code-injection", "generated"] + - ["cvc5/cvc5", "*", "inputs.check-install", "code-injection", "generated"] + - ["cvc5/cvc5", "*", "inputs.regressions-exclude", "code-injection", "generated"] + - ["cvc5/cvc5", "*", "inputs.strip-bin", "code-injection", "generated"] + - ["cvc5/cvc5", "*", "inputs.configure-config", "code-injection", "generated"] + - ["cvc5/cvc5", "*", "inputs.configure-env", "code-injection", "generated"] + - ["cvc5/cvc5", "*", "inputs.package-name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/d2l-ai_d2l-en.model.yml b/ql/lib/ext/generated/composite-actions/d2l-ai_d2l-en.model.yml new file mode 100644 index 00000000000..5ffefd58e53 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/d2l-ai_d2l-en.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["d2l-ai/d2l-en", "*", "inputs.command", "code-injection", "generated"] + - ["d2l-ai/d2l-en", "*", "inputs.work-dir", "code-injection", "generated"] + - ["d2l-ai/d2l-en", "*", "inputs.job-name", "code-injection", "generated"] + - ["d2l-ai/d2l-en", "*", "inputs.job-type", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/danysk_build-check-deploy-gradle-action.model.yml b/ql/lib/ext/generated/composite-actions/danysk_build-check-deploy-gradle-action.model.yml new file mode 100644 index 00000000000..742e1876811 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/danysk_build-check-deploy-gradle-action.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["danysk/build-check-deploy-gradle-action", "*", "inputs.clean-command", "code-injection", "generated"] + - ["danysk/build-check-deploy-gradle-action", "*", "inputs.deploy-command", "code-injection", "generated"] + - ["danysk/build-check-deploy-gradle-action", "*", "inputs.wait-between-retries", "code-injection", "generated"] + - ["danysk/build-check-deploy-gradle-action", "*", "inputs.retries-on-failure", "code-injection", "generated"] + - ["danysk/build-check-deploy-gradle-action", "*", "inputs.check-command", "code-injection", "generated"] + - ["danysk/build-check-deploy-gradle-action", "*", "inputs.build-command", "code-injection", "generated"] + - ["danysk/build-check-deploy-gradle-action", "*", "inputs.pre-build-command", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/datadog_dd-trace-dotnet.model.yml b/ql/lib/ext/generated/composite-actions/datadog_dd-trace-dotnet.model.yml new file mode 100644 index 00000000000..97c75ae6f5c --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/datadog_dd-trace-dotnet.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["datadog/dd-trace-dotnet", "*", "inputs.command", "code-injection", "generated"] + - ["datadog/dd-trace-dotnet", "*", "inputs.baseImage", "code-injection", "generated"] + - ["datadog/dd-trace-dotnet", "*", "inputs.aas_github_token", "code-injection", "generated"] + - ["datadog/dd-trace-dotnet", "*", "inputs.artifacts_path", "code-injection", "generated"] + - ["datadog/dd-trace-dotnet", "*", "inputs.github_token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/datadog_dd-trace-go.model.yml b/ql/lib/ext/generated/composite-actions/datadog_dd-trace-go.model.yml new file mode 100644 index 00000000000..fa98e84315d --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/datadog_dd-trace-go.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["datadog/dd-trace-go", "*", "inputs.files", "code-injection", "generated"] + - ["datadog/dd-trace-go", "*", "inputs.tags", "code-injection", "generated"] + - ["datadog/dd-trace-go", "*", "inputs.service", "code-injection", "generated"] + - ["datadog/dd-trace-go", "*", "inputs.dd-api-key", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/datadog_dd-trace-js.model.yml b/ql/lib/ext/generated/composite-actions/datadog_dd-trace-js.model.yml new file mode 100644 index 00000000000..3bc48b644d0 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/datadog_dd-trace-js.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["datadog/dd-trace-js", "*", "inputs.container-id", "code-injection", "generated"] + - ["datadog/dd-trace-js", "*", "inputs.init-image-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/datafuselabs_databend.model.yml b/ql/lib/ext/generated/composite-actions/datafuselabs_databend.model.yml new file mode 100644 index 00000000000..81e07943026 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/datafuselabs_databend.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["datafuselabs/databend", "*", "inputs.dataset", "code-injection", "generated"] + - ["datafuselabs/databend", "*", "inputs.dirs", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/davatorium_rofi.model.yml b/ql/lib/ext/generated/composite-actions/davatorium_rofi.model.yml new file mode 100644 index 00000000000..a1fdb476748 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/davatorium_rofi.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["davatorium/rofi", "*", "inputs.logfile", "code-injection", "generated"] + - ["davatorium/rofi", "*", "inputs.windowmode", "code-injection", "generated"] + - ["davatorium/rofi", "*", "inputs.cc", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/debezium_debezium.model.yml b/ql/lib/ext/generated/composite-actions/debezium_debezium.model.yml new file mode 100644 index 00000000000..5744f3e7495 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/debezium_debezium.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["debezium/debezium", "*", "inputs.path-core", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/defenseunicorns_zarf.model.yml b/ql/lib/ext/generated/composite-actions/defenseunicorns_zarf.model.yml new file mode 100644 index 00000000000..852e39799d9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/defenseunicorns_zarf.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["defenseunicorns/zarf", "*", "inputs.os", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/demarches-simplifiees_demarches-simplifiees.fr.model.yml b/ql/lib/ext/generated/composite-actions/demarches-simplifiees_demarches-simplifiees.fr.model.yml new file mode 100644 index 00000000000..a0d7eb51354 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/demarches-simplifiees_demarches-simplifiees.fr.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["demarches-simplifiees/demarches-simplifiees.fr", "*", "inputs.results_path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/department-of-veterans-affairs_vets-website.model.yml b/ql/lib/ext/generated/composite-actions/department-of-veterans-affairs_vets-website.model.yml new file mode 100644 index 00000000000..8d10d22cd5c --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/department-of-veterans-affairs_vets-website.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["department-of-veterans-affairs/vets-website", "*", "inputs.delimiter", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/devexpress_devextreme.model.yml b/ql/lib/ext/generated/composite-actions/devexpress_devextreme.model.yml new file mode 100644 index 00000000000..c99c630853e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/devexpress_devextreme.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["devexpress/devextreme", "*", "inputs.name", "code-injection", "generated"] + - ["devexpress/devextreme", "*", "inputs.result", "code-injection", "generated"] + - ["devexpress/devextreme", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/diggerhq_digger.model.yml b/ql/lib/ext/generated/composite-actions/diggerhq_digger.model.yml new file mode 100644 index 00000000000..8554ebec65f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/diggerhq_digger.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["diggerhq/digger", "*", "inputs.checkov-version", "code-injection", "generated"] + - ["diggerhq/digger", "*", "inputs.google-auth-credentials", "code-injection", "generated"] + - ["diggerhq/digger", "*", "inputs.google-workload-identity-provider", "code-injection", "generated"] + - ["diggerhq/digger", "*", "inputs.google-service-account", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/diku-dk_futhark.model.yml b/ql/lib/ext/generated/composite-actions/diku-dk_futhark.model.yml new file mode 100644 index 00000000000..6f0878a77cb --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/diku-dk_futhark.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["diku-dk/futhark", "*", "inputs.script", "code-injection", "generated"] + - ["diku-dk/futhark", "*", "inputs.slurm-options", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/discourse_.github.model.yml b/ql/lib/ext/generated/composite-actions/discourse_.github.model.yml new file mode 100644 index 00000000000..198109f790c --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/discourse_.github.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["discourse/.github", "*", "inputs.about_json_path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/dnsjava_dnsjava.model.yml b/ql/lib/ext/generated/composite-actions/dnsjava_dnsjava.model.yml new file mode 100644 index 00000000000..e634eaa38a2 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/dnsjava_dnsjava.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["dnsjava/dnsjava", "*", "inputs.name", "code-injection", "generated"] + - ["dnsjava/dnsjava", "*", "inputs.filename", "code-injection", "generated"] + - ["dnsjava/dnsjava", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/dotintent_react-native-ble-plx.model.yml b/ql/lib/ext/generated/composite-actions/dotintent_react-native-ble-plx.model.yml new file mode 100644 index 00000000000..e26ba9755d0 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/dotintent_react-native-ble-plx.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["dotintent/react-native-ble-plx", "*", "inputs.REACT_NATIVE_VERSION", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/dotnet_docs-tools.model.yml b/ql/lib/ext/generated/composite-actions/dotnet_docs-tools.model.yml new file mode 100644 index 00000000000..2cda1936f01 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/dotnet_docs-tools.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["dotnet/docs-tools", "*", "inputs.support", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/dotnet_dotnet-monitor.model.yml b/ql/lib/ext/generated/composite-actions/dotnet_dotnet-monitor.model.yml new file mode 100644 index 00000000000..f83cf533944 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/dotnet_dotnet-monitor.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["dotnet/dotnet-monitor", "*", "inputs.files_to_commit", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/dragonflydb_dragonfly.model.yml b/ql/lib/ext/generated/composite-actions/dragonflydb_dragonfly.model.yml new file mode 100644 index 00000000000..5af04ac6ac7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/dragonflydb_dragonfly.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["dragonflydb/dragonfly", "*", "inputs.gspace-secret", "code-injection", "generated"] + - ["dragonflydb/dragonfly", "*", "inputs.filter", "code-injection", "generated"] + - ["dragonflydb/dragonfly", "*", "inputs.dfly-executable", "code-injection", "generated"] + - ["dragonflydb/dragonfly", "*", "inputs.build-folder-name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/eksctl-io_eksctl.model.yml b/ql/lib/ext/generated/composite-actions/eksctl-io_eksctl.model.yml new file mode 100644 index 00000000000..0d0cae87e09 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/eksctl-io_eksctl.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["eksctl-io/eksctl", "*", "inputs.token", "code-injection", "generated"] + - ["eksctl-io/eksctl", "*", "inputs.email", "code-injection", "generated"] + - ["eksctl-io/eksctl", "*", "inputs.name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/elastic_apm-agent-dotnet.model.yml b/ql/lib/ext/generated/composite-actions/elastic_apm-agent-dotnet.model.yml new file mode 100644 index 00000000000..070b502e188 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/elastic_apm-agent-dotnet.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["elastic/apm-agent-dotnet", "*", "inputs.project", "code-injection", "generated"] + - ["elastic/apm-agent-dotnet", "*", "inputs.name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/elastic_apm-agent-java.model.yml b/ql/lib/ext/generated/composite-actions/elastic_apm-agent-java.model.yml new file mode 100644 index 00000000000..6c0cf90523a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/elastic_apm-agent-java.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["elastic/apm-agent-java", "*", "inputs.tag", "code-injection", "generated"] + - ["elastic/apm-agent-java", "*", "inputs.path", "code-injection", "generated"] + - ["elastic/apm-agent-java", "*", "inputs.name", "code-injection", "generated"] + - ["elastic/apm-agent-java", "*", "inputs.test-java-version", "code-injection", "generated"] + - ["elastic/apm-agent-java", "*", "inputs.command", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/elementor_elementor.model.yml b/ql/lib/ext/generated/composite-actions/elementor_elementor.model.yml new file mode 100644 index 00000000000..ca6459221d4 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/elementor_elementor.model.yml @@ -0,0 +1,13 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["elementor/elementor", "*", "inputs.README_TXT_PATH", "code-injection", "generated"] + - ["elementor/elementor", "*", "inputs.CHANNEL", "code-injection", "generated"] + - ["elementor/elementor", "*", "inputs.PACKAGE_VERSION", "code-injection", "generated"] + - ["elementor/elementor", "*", "inputs.MESSAGE", "code-injection", "generated"] + - ["elementor/elementor", "*", "inputs.SLACK_TOKEN", "code-injection", "generated"] + - ["elementor/elementor", "*", "inputs.SLACK_CHANNELS", "code-injection", "generated"] + - ["elementor/elementor", "*", "inputs.PRERELEASE", "code-injection", "generated"] + - ["elementor/elementor", "*", "inputs.TAG_NAME", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/emberjs_data.model.yml b/ql/lib/ext/generated/composite-actions/emberjs_data.model.yml new file mode 100644 index 00000000000..79d14b65bcc --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/emberjs_data.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["emberjs/data", "*", "inputs.jobs", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/emqx_emqx.model.yml b/ql/lib/ext/generated/composite-actions/emqx_emqx.model.yml new file mode 100644 index 00000000000..69771693787 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/emqx_emqx.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["emqx/emqx", "*", "inputs.profile", "code-injection", "generated"] + - ["emqx/emqx", "*", "inputs.otp", "code-injection", "generated"] + - ["emqx/emqx", "*", "inputs.os", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/eonasdan_tempus-dominus.model.yml b/ql/lib/ext/generated/composite-actions/eonasdan_tempus-dominus.model.yml new file mode 100644 index 00000000000..a5a3cfbb1c9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/eonasdan_tempus-dominus.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["eonasdan/tempus-dominus", "*", "inputs.VERSION", "code-injection", "generated"] + - ["eonasdan/tempus-dominus", "*", "inputs.NUGET_API_KEY", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/erlang_otp.model.yml b/ql/lib/ext/generated/composite-actions/erlang_otp.model.yml new file mode 100644 index 00000000000..2000f5d9d00 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/erlang_otp.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["erlang/otp", "*", "inputs.TYPE", "code-injection", "generated"] + - ["erlang/otp", "*", "inputs.BASE_BRANCH", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/esphome_esphome.model.yml b/ql/lib/ext/generated/composite-actions/esphome_esphome.model.yml new file mode 100644 index 00000000000..95164c659ed --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/esphome_esphome.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["esphome/esphome", "*", "inputs.target", "code-injection", "generated"] + - ["esphome/esphome", "*", "inputs.suffix", "code-injection", "generated"] + - ["esphome/esphome", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/expensify_app.model.yml b/ql/lib/ext/generated/composite-actions/expensify_app.model.yml new file mode 100644 index 00000000000..7e3b5e4caf6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/expensify_app.model.yml @@ -0,0 +1,14 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["expensify/app", "*", "inputs.GPG_PASSPHRASE", "code-injection", "generated"] + - ["expensify/app", "*", "inputs.PACKAGE_SCRIPT_NAME", "code-injection", "generated"] + - ["expensify/app", "*", "inputs.EXPENSIFY_PARTNER_PASSWORD_EMAIL", "code-injection", "generated"] + - ["expensify/app", "*", "inputs.EXPENSIFY_PARTNER_USER_SECRET", "code-injection", "generated"] + - ["expensify/app", "*", "inputs.EXPENSIFY_PARTNER_USER_ID", "code-injection", "generated"] + - ["expensify/app", "*", "inputs.EXPENSIFY_PARTNER_PASSWORD", "code-injection", "generated"] + - ["expensify/app", "*", "inputs.PATH_ENV_FILE", "code-injection", "generated"] + - ["expensify/app", "*", "inputs.EXPENSIFY_PARTNER_NAME", "code-injection", "generated"] + - ["expensify/app", "*", "inputs.MAPBOX_SDK_DOWNLOAD_TOKEN", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/expo_expo.model.yml b/ql/lib/ext/generated/composite-actions/expo_expo.model.yml new file mode 100644 index 00000000000..f335170dc85 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/expo_expo.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["expo/expo", "*", "inputs.ndk-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/expo_vscode-expo.model.yml b/ql/lib/ext/generated/composite-actions/expo_vscode-expo.model.yml new file mode 100644 index 00000000000..555fa42a79c --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/expo_vscode-expo.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["expo/vscode-expo", "*", "inputs.command", "code-injection", "generated"] + - ["expo/vscode-expo", "*", "inputs.semver", "code-injection", "generated"] + - ["expo/vscode-expo", "*", "inputs.name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/external-secrets_external-secrets.model.yml b/ql/lib/ext/generated/composite-actions/external-secrets_external-secrets.model.yml new file mode 100644 index 00000000000..8fd9440729f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/external-secrets_external-secrets.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["external-secrets/external-secrets", "*", "inputs.image-tag", "code-injection", "generated"] + - ["external-secrets/external-secrets", "*", "inputs.image-name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/facebook_buck2.model.yml b/ql/lib/ext/generated/composite-actions/facebook_buck2.model.yml new file mode 100644 index 00000000000..f9479e11aab --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/facebook_buck2.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["facebook/buck2", "*", "inputs.tag", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/facebook_flow.model.yml b/ql/lib/ext/generated/composite-actions/facebook_flow.model.yml new file mode 100644 index 00000000000..711eabc2bfa --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/facebook_flow.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["facebook/flow", "*", "inputs.arch", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/facebook_yoga.model.yml b/ql/lib/ext/generated/composite-actions/facebook_yoga.model.yml new file mode 100644 index 00000000000..745f89d8677 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/facebook_yoga.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["facebook/yoga", "*", "inputs.version", "code-injection", "generated"] + - ["facebook/yoga", "*", "inputs.directory", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/facebookresearch_xformers.model.yml b/ql/lib/ext/generated/composite-actions/facebookresearch_xformers.model.yml new file mode 100644 index 00000000000..a732e2fac3f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/facebookresearch_xformers.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["facebookresearch/xformers", "*", "inputs.arch", "code-injection", "generated"] + - ["facebookresearch/xformers", "*", "inputs.pytorch_channel", "code-injection", "generated"] + - ["facebookresearch/xformers", "*", "inputs.pytorch_version", "code-injection", "generated"] + - ["facebookresearch/xformers", "*", "inputs.python", "code-injection", "generated"] + - ["facebookresearch/xformers", "*", "inputs.cuda", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/fastly_compute-actions.model.yml b/ql/lib/ext/generated/composite-actions/fastly_compute-actions.model.yml new file mode 100644 index 00000000000..1aebd1199a5 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/fastly_compute-actions.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["fastly/compute-actions", "*", "inputs.fastly-api-token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/felangel_bloc.model.yml b/ql/lib/ext/generated/composite-actions/felangel_bloc.model.yml new file mode 100644 index 00000000000..708adf528f2 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/felangel_bloc.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["felangel/bloc", "*", "inputs.coverage_excludes", "code-injection", "generated"] + - ["felangel/bloc", "*", "inputs.analyze_directories", "code-injection", "generated"] + - ["felangel/bloc", "*", "inputs.report_on", "code-injection", "generated"] + - ["felangel/bloc", "*", "inputs.concurrency", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/firebase_firebase-ios-sdk.model.yml b/ql/lib/ext/generated/composite-actions/firebase_firebase-ios-sdk.model.yml new file mode 100644 index 00000000000..18c02da4443 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/firebase_firebase-ios-sdk.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["firebase/firebase-ios-sdk", "*", "inputs.min-ios-version", "code-injection", "generated"] + - ["firebase/firebase-ios-sdk", "*", "inputs.sources", "code-injection", "generated"] + - ["firebase/firebase-ios-sdk", "*", "inputs.pods", "code-injection", "generated"] + - ["firebase/firebase-ios-sdk", "*", "inputs.notices-path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/flaxengine_flaxengine.model.yml b/ql/lib/ext/generated/composite-actions/flaxengine_flaxengine.model.yml new file mode 100644 index 00000000000..c0a44fae749 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/flaxengine_flaxengine.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["flaxengine/flaxengine", "*", "inputs.vulkan-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/flipperdevices_flipperzero-firmware.model.yml b/ql/lib/ext/generated/composite-actions/flipperdevices_flipperzero-firmware.model.yml new file mode 100644 index 00000000000..af0f474bfae --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/flipperdevices_flipperzero-firmware.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["flipperdevices/flipperzero-firmware", "*", "inputs.firmware-version", "code-injection", "generated"] + - ["flipperdevices/flipperzero-firmware", "*", "inputs.firmware-target", "code-injection", "generated"] + - ["flipperdevices/flipperzero-firmware", "*", "inputs.firmware-api", "code-injection", "generated"] + - ["flipperdevices/flipperzero-firmware", "*", "inputs.catalog-api-token", "code-injection", "generated"] + - ["flipperdevices/flipperzero-firmware", "*", "inputs.catalog-url", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/fluxcd_flux2.model.yml b/ql/lib/ext/generated/composite-actions/fluxcd_flux2.model.yml new file mode 100644 index 00000000000..731ecd5ab1b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/fluxcd_flux2.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["fluxcd/flux2", "*", "inputs.bindir", "code-injection", "generated"] + - ["fluxcd/flux2", "*", "inputs.token", "code-injection", "generated"] + - ["fluxcd/flux2", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/forcedotcom_salesforcedx-vscode.model.yml b/ql/lib/ext/generated/composite-actions/forcedotcom_salesforcedx-vscode.model.yml new file mode 100644 index 00000000000..ca4dc84bbfc --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/forcedotcom_salesforcedx-vscode.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["forcedotcom/salesforcedx-vscode", "*", "inputs.email", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/fossasia_visdom.model.yml b/ql/lib/ext/generated/composite-actions/fossasia_visdom.model.yml new file mode 100644 index 00000000000..caa6432efa9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/fossasia_visdom.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["fossasia/visdom", "*", "inputs.loadprbuild", "code-injection", "generated"] + - ["fossasia/visdom", "*", "inputs.usebasebranch", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/freckle_stack-action.model.yml b/ql/lib/ext/generated/composite-actions/freckle_stack-action.model.yml new file mode 100644 index 00000000000..a2e78841f69 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/freckle_stack-action.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["freckle/stack-action", "*", "inputs.find-options", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/freeradius_freeradius-server.model.yml b/ql/lib/ext/generated/composite-actions/freeradius_freeradius-server.model.yml new file mode 100644 index 00000000000..fbb76ae46e8 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/freeradius_freeradius-server.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["freeradius/freeradius-server", "*", "inputs.gcc_ver", "code-injection", "generated"] + - ["freeradius/freeradius-server", "*", "inputs.llvm_ver", "code-injection", "generated"] + - ["freeradius/freeradius-server", "*", "inputs.sql_mysql_test_server", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/gaphor_gaphor.model.yml b/ql/lib/ext/generated/composite-actions/gaphor_gaphor.model.yml new file mode 100644 index 00000000000..23d001db673 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/gaphor_gaphor.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["gaphor/gaphor", "*", "inputs.version", "code-injection", "generated"] + - ["gaphor/gaphor", "*", "inputs.base64_encoded_pfx", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/getsentry_action-release.model.yml b/ql/lib/ext/generated/composite-actions/getsentry_action-release.model.yml new file mode 100644 index 00000000000..94c7adf250a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/getsentry_action-release.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["getsentry/action-release", "*", "inputs.working_directory", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/github_codeql-action.model.yml b/ql/lib/ext/generated/composite-actions/github_codeql-action.model.yml new file mode 100644 index 00000000000..85632a06a75 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/github_codeql-action.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["github/codeql-action", "*", "inputs.latest_tag", "code-injection", "generated"] + - ["github/codeql-action", "*", "inputs.major_version", "code-injection", "generated"] + - ["github/codeql-action", "*", "inputs.version", "code-injection", "generated"] + - ["github/codeql-action", "*", "inputs.use-all-platform-bundle", "code-injection", "generated"] + - ["github/codeql-action", "*", "inputs.expected-config-file-contents", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/github_ruby.model.yml b/ql/lib/ext/generated/composite-actions/github_ruby.model.yml new file mode 100644 index 00000000000..9f002168214 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/github_ruby.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["github/ruby", "*", "inputs.builddir", "code-injection", "generated"] + - ["github/ruby", "*", "inputs.srcdir", "code-injection", "generated"] + - ["github/ruby", "*", "inputs.test-opts", "code-injection", "generated"] + - ["github/ruby", "*", "inputs.report-path", "code-injection", "generated"] + - ["github/ruby", "*", "inputs.launchable-token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/gittools_gitversion.model.yml b/ql/lib/ext/generated/composite-actions/gittools_gitversion.model.yml new file mode 100644 index 00000000000..f1191e5c1c6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/gittools_gitversion.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["gittools/gitversion", "*", "inputs.distro", "code-injection", "generated"] + - ["gittools/gitversion", "*", "inputs.targetFramework", "code-injection", "generated"] + - ["gittools/gitversion", "*", "inputs.arch", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/go-spatial_tegola.model.yml b/ql/lib/ext/generated/composite-actions/go-spatial_tegola.model.yml new file mode 100644 index 00000000000..b0e30669c2e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/go-spatial_tegola.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["go-spatial/tegola", "*", "inputs.artifact_name", "code-injection", "generated"] + - ["go-spatial/tegola", "*", "inputs.name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/goauthentik_authentik.model.yml b/ql/lib/ext/generated/composite-actions/goauthentik_authentik.model.yml new file mode 100644 index 00000000000..e26f0a886d9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/goauthentik_authentik.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["goauthentik/authentik", "*", "inputs.postgresql_version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/godotengine_godot.model.yml b/ql/lib/ext/generated/composite-actions/godotengine_godot.model.yml new file mode 100644 index 00000000000..4b40b2fda8a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/godotengine_godot.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["godotengine/godot", "*", "inputs.bin", "code-injection", "generated"] + - ["godotengine/godot", "*", "inputs.tests", "code-injection", "generated"] + - ["godotengine/godot", "*", "inputs.target", "code-injection", "generated"] + - ["godotengine/godot", "*", "inputs.platform", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/google_dagger.model.yml b/ql/lib/ext/generated/composite-actions/google_dagger.model.yml new file mode 100644 index 00000000000..06b6e37ea1c --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/google_dagger.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["google/dagger", "*", "inputs.agp", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/googleapis_java-cloud-bom.model.yml b/ql/lib/ext/generated/composite-actions/googleapis_java-cloud-bom.model.yml new file mode 100644 index 00000000000..dab53d9d5a3 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/googleapis_java-cloud-bom.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["googleapis/java-cloud-bom", "*", "inputs.bom-path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/googleapis_sdk-platform-java.model.yml b/ql/lib/ext/generated/composite-actions/googleapis_sdk-platform-java.model.yml new file mode 100644 index 00000000000..ce485e688f2 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/googleapis_sdk-platform-java.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["googleapis/sdk-platform-java", "*", "inputs.bom-path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/googlecloudplatform_magic-modules.model.yml b/ql/lib/ext/generated/composite-actions/googlecloudplatform_magic-modules.model.yml new file mode 100644 index 00000000000..82d69349e3a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/googlecloudplatform_magic-modules.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["googlecloudplatform/magic-modules", "*", "inputs.repo", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/gravitational_teleport.model.yml b/ql/lib/ext/generated/composite-actions/gravitational_teleport.model.yml new file mode 100644 index 00000000000..13a6bfe9233 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/gravitational_teleport.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["gravitational/teleport", "*", "inputs.target", "code-injection", "generated"] + - ["gravitational/teleport", "*", "inputs.attempts", "code-injection", "generated"] + - ["gravitational/teleport", "*", "inputs.flags", "code-injection", "generated"] + - ["gravitational/teleport", "*", "inputs.path", "code-injection", "generated"] + - ["gravitational/teleport", "*", "inputs.bin", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/grote_transportr.model.yml b/ql/lib/ext/generated/composite-actions/grote_transportr.model.yml new file mode 100644 index 00000000000..163abb26185 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/grote_transportr.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["grote/transportr", "*", "inputs.api-level", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/hashicorp_nomad.model.yml b/ql/lib/ext/generated/composite-actions/hashicorp_nomad.model.yml new file mode 100644 index 00000000000..3be0de43329 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/hashicorp_nomad.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["hashicorp/nomad", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/hashicorp_terraform.model.yml b/ql/lib/ext/generated/composite-actions/hashicorp_terraform.model.yml new file mode 100644 index 00000000000..2b0b84e172b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/hashicorp_terraform.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["hashicorp/terraform", "*", "inputs.target-terraform-branch", "code-injection", "generated"] + - ["hashicorp/terraform", "*", "inputs.target-terraform-version", "code-injection", "generated"] + - ["hashicorp/terraform", "*", "inputs.target-arch", "code-injection", "generated"] + - ["hashicorp/terraform", "*", "inputs.target-os", "code-injection", "generated"] + - ["hashicorp/terraform", "*", "inputs.target-equivalence-test-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/hashicorp_vault.model.yml b/ql/lib/ext/generated/composite-actions/hashicorp_vault.model.yml new file mode 100644 index 00000000000..bcd6e0eda31 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/hashicorp_vault.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["hashicorp/vault", "*", "inputs.destination", "code-injection", "generated"] + - ["hashicorp/vault", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/home-assistant_android.model.yml b/ql/lib/ext/generated/composite-actions/home-assistant_android.model.yml new file mode 100644 index 00000000000..d93b946f3d7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/home-assistant_android.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["home-assistant/android", "*", "inputs.lokalise-token", "code-injection", "generated"] + - ["home-assistant/android", "*", "inputs.lokalise-project", "code-injection", "generated"] + - ["home-assistant/android", "*", "inputs.tag-name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/homebrew_actions.model.yml b/ql/lib/ext/generated/composite-actions/homebrew_actions.model.yml new file mode 100644 index 00000000000..40adbe1fc29 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/homebrew_actions.model.yml @@ -0,0 +1,14 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["homebrew/actions", "*", "inputs.casks", "code-injection", "generated"] + - ["homebrew/actions", "*", "inputs.formulae", "code-injection", "generated"] + - ["homebrew/actions", "*", "inputs.signing_key", "code-injection", "generated"] + - ["homebrew/actions", "*", "inputs.workflow-name", "code-injection", "generated"] + - ["homebrew/actions", "*", "inputs.collapse", "code-injection", "generated"] + - ["homebrew/actions", "*", "inputs.step_name", "code-injection", "generated"] + - ["homebrew/actions", "*", "inputs.result_path", "code-injection", "generated"] + - ["homebrew/actions", "*", "inputs.workdir", "code-injection", "generated"] + - ["homebrew/actions", "*", "inputs.script", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/hyperledger_aries-cloudagent-python.model.yml b/ql/lib/ext/generated/composite-actions/hyperledger_aries-cloudagent-python.model.yml new file mode 100644 index 00000000000..293d8a832bd --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/hyperledger_aries-cloudagent-python.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["hyperledger/aries-cloudagent-python", "*", "inputs.TEST_SCOPE", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/hyperledger_fabric-samples.model.yml b/ql/lib/ext/generated/composite-actions/hyperledger_fabric-samples.model.yml new file mode 100644 index 00000000000..c72000641ce --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/hyperledger_fabric-samples.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["hyperledger/fabric-samples", "*", "inputs.ca-version", "code-injection", "generated"] + - ["hyperledger/fabric-samples", "*", "inputs.fabric-version", "code-injection", "generated"] + - ["hyperledger/fabric-samples", "*", "inputs.k9s-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/igniterealtime_openfire.model.yml b/ql/lib/ext/generated/composite-actions/igniterealtime_openfire.model.yml new file mode 100644 index 00000000000..53929ab8ed1 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/igniterealtime_openfire.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["igniterealtime/openfire", "*", "inputs.domain", "code-injection", "generated"] + - ["igniterealtime/openfire", "*", "inputs.ip", "code-injection", "generated"] + - ["igniterealtime/openfire", "*", "inputs.distBaseDir", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/infracost_actions.model.yml b/ql/lib/ext/generated/composite-actions/infracost_actions.model.yml new file mode 100644 index 00000000000..1330f370747 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/infracost_actions.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["infracost/actions", "*", "inputs.behavior", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/inspektor-gadget_inspektor-gadget.model.yml b/ql/lib/ext/generated/composite-actions/inspektor-gadget_inspektor-gadget.model.yml new file mode 100644 index 00000000000..d9d9c6770bc --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/inspektor-gadget_inspektor-gadget.model.yml @@ -0,0 +1,18 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.runtime", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.registry", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.container-image", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.gadget_tag", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.gadget_repository", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.dnstester_image", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.image_tag", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.container_repo", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.kubernetes_architecture", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.kubernetes_distribution", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.test-step-conclusion", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.test-summary-suffix", "code-injection", "generated"] + - ["inspektor-gadget/inspektor-gadget", "*", "inputs.test-log-file", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/intel-analytics_ipex-llm.model.yml b/ql/lib/ext/generated/composite-actions/intel-analytics_ipex-llm.model.yml new file mode 100644 index 00000000000..faf1d7ed5c5 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/intel-analytics_ipex-llm.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["intel-analytics/ipex-llm", "*", "inputs.extra-dependency", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ionic-team_ionic-framework.model.yml b/ql/lib/ext/generated/composite-actions/ionic-team_ionic-framework.model.yml new file mode 100644 index 00000000000..12ae92c149b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ionic-team_ionic-framework.model.yml @@ -0,0 +1,16 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ionic-team/ionic-framework", "*", "inputs.totalShards", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.shard", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.component", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.paths", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.output", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.app", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.stencil-version", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.folder", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.tag", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.preid", "code-injection", "generated"] + - ["ionic-team/ionic-framework", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ionic-team_ionicons.model.yml b/ql/lib/ext/generated/composite-actions/ionic-team_ionicons.model.yml new file mode 100644 index 00000000000..61001620017 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ionic-team_ionicons.model.yml @@ -0,0 +1,14 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ionic-team/ionicons", "*", "inputs.paths", "code-injection", "generated"] + - ["ionic-team/ionicons", "*", "inputs.output", "code-injection", "generated"] + - ["ionic-team/ionicons", "*", "inputs.totalShards", "code-injection", "generated"] + - ["ionic-team/ionicons", "*", "inputs.shard", "code-injection", "generated"] + - ["ionic-team/ionicons", "*", "inputs.folder", "code-injection", "generated"] + - ["ionic-team/ionicons", "*", "inputs.tag", "code-injection", "generated"] + - ["ionic-team/ionicons", "*", "inputs.version", "code-injection", "generated"] + - ["ionic-team/ionicons", "*", "inputs.filename", "code-injection", "generated"] + - ["ionic-team/ionicons", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ionic-team_stencil.model.yml b/ql/lib/ext/generated/composite-actions/ionic-team_stencil.model.yml new file mode 100644 index 00000000000..1d30610cfd1 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ionic-team_stencil.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ionic-team/stencil", "*", "inputs.paths", "code-injection", "generated"] + - ["ionic-team/stencil", "*", "inputs.output", "code-injection", "generated"] + - ["ionic-team/stencil", "*", "inputs.tag", "code-injection", "generated"] + - ["ionic-team/stencil", "*", "inputs.version", "code-injection", "generated"] + - ["ionic-team/stencil", "*", "inputs.filename", "code-injection", "generated"] + - ["ionic-team/stencil", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ipfs_aegir.model.yml b/ql/lib/ext/generated/composite-actions/ipfs_aegir.model.yml new file mode 100644 index 00000000000..867dc33f432 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ipfs_aegir.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ipfs/aegir", "*", "inputs.browser", "code-injection", "generated"] + - ["ipfs/aegir", "*", "inputs.docker-username", "code-injection", "generated"] + - ["ipfs/aegir", "*", "inputs.docker-token", "code-injection", "generated"] + - ["ipfs/aegir", "*", "inputs.build", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/jetbrains_jetbrainsruntime.model.yml b/ql/lib/ext/generated/composite-actions/jetbrains_jetbrainsruntime.model.yml new file mode 100644 index 00000000000..87b014cbdd6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/jetbrains_jetbrainsruntime.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["jetbrains/jetbrainsruntime", "*", "inputs.debug-suffix", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/jhipster_generator-jhipster.model.yml b/ql/lib/ext/generated/composite-actions/jhipster_generator-jhipster.model.yml new file mode 100644 index 00000000000..6dd3ac94306 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/jhipster_generator-jhipster.model.yml @@ -0,0 +1,22 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["jhipster/generator-jhipster", "*", "inputs.generator-path", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.application-packaging", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.application-environment", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.executable", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.jdl-entities-sample", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.entities-sample", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.application-sample", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.jdl-sample", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.generator-jhipster-branch", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.generator-jhipster-repository", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.jhipster-bom-directory", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.jhipster-bom-branch", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.jhipster-bom-repository", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.package-with-executable", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.generator-jhipster-directory", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.application-path", "code-injection", "generated"] + - ["jhipster/generator-jhipster", "*", "inputs.extra-args", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/jsocol_django-ratelimit.model.yml b/ql/lib/ext/generated/composite-actions/jsocol_django-ratelimit.model.yml new file mode 100644 index 00000000000..f952bd1da93 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/jsocol_django-ratelimit.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["jsocol/django-ratelimit", "*", "inputs.django-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/juicedata_juicefs.model.yml b/ql/lib/ext/generated/composite-actions/juicedata_juicefs.model.yml new file mode 100644 index 00000000000..977662bfa65 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/juicedata_juicefs.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["juicedata/juicefs", "*", "inputs.compress", "code-injection", "generated"] + - ["juicedata/juicefs", "*", "inputs.storage", "code-injection", "generated"] + - ["juicedata/juicefs", "*", "inputs.meta", "code-injection", "generated"] + - ["juicedata/juicefs", "*", "inputs.name", "code-injection", "generated"] + - ["juicedata/juicefs", "*", "inputs.mysql_password", "code-injection", "generated"] + - ["juicedata/juicefs", "*", "inputs.file_test_mode", "code-injection", "generated"] + - ["juicedata/juicefs", "*", "inputs.file_total_size", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/jupyter_docker-stacks.model.yml b/ql/lib/ext/generated/composite-actions/jupyter_docker-stacks.model.yml new file mode 100644 index 00000000000..4c6c92fdefd --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/jupyter_docker-stacks.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["jupyter/docker-stacks", "*", "inputs.variant", "code-injection", "generated"] + - ["jupyter/docker-stacks", "*", "inputs.image", "code-injection", "generated"] + - ["jupyter/docker-stacks", "*", "inputs.platform", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/keycloak_keycloak.model.yml b/ql/lib/ext/generated/composite-actions/keycloak_keycloak.model.yml new file mode 100644 index 00000000000..45c2c1d780a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/keycloak_keycloak.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["keycloak/keycloak", "*", "inputs.job-name", "code-injection", "generated"] + - ["keycloak/keycloak", "*", "inputs.jobs", "code-injection", "generated"] + - ["keycloak/keycloak", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/kserve_kserve.model.yml b/ql/lib/ext/generated/composite-actions/kserve_kserve.model.yml new file mode 100644 index 00000000000..1edfbfc9432 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/kserve_kserve.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["kserve/kserve", "*", "inputs.directory", "code-injection", "generated"] + - ["kserve/kserve", "*", "inputs.deployment-mode", "code-injection", "generated"] + - ["kserve/kserve", "*", "inputs.network-layer", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/kubeflow_katib.model.yml b/ql/lib/ext/generated/composite-actions/kubeflow_katib.model.yml new file mode 100644 index 00000000000..658283336bd --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/kubeflow_katib.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["kubeflow/katib", "*", "inputs.experiments", "code-injection", "generated"] + - ["kubeflow/katib", "*", "inputs.database-type", "code-injection", "generated"] + - ["kubeflow/katib", "*", "inputs.training-operator", "code-injection", "generated"] + - ["kubeflow/katib", "*", "inputs.katib-ui", "code-injection", "generated"] + - ["kubeflow/katib", "*", "inputs.trial-images", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/kubeflow_training-operator.model.yml b/ql/lib/ext/generated/composite-actions/kubeflow_training-operator.model.yml new file mode 100644 index 00000000000..d00b30874cc --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/kubeflow_training-operator.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["kubeflow/training-operator", "*", "inputs.context", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/kubernetes-sigs_karpenter.model.yml b/ql/lib/ext/generated/composite-actions/kubernetes-sigs_karpenter.model.yml new file mode 100644 index 00000000000..94ece1a58a0 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/kubernetes-sigs_karpenter.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["kubernetes-sigs/karpenter", "*", "inputs.k8sVersion", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/kubernetes-sigs_kwok.model.yml b/ql/lib/ext/generated/composite-actions/kubernetes-sigs_kwok.model.yml new file mode 100644 index 00000000000..46d5a4383f4 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/kubernetes-sigs_kwok.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["kubernetes-sigs/kwok", "*", "inputs.command", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/kubescape_kubescape.model.yml b/ql/lib/ext/generated/composite-actions/kubescape_kubescape.model.yml new file mode 100644 index 00000000000..5627a31bd90 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/kubescape_kubescape.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["kubescape/kubescape", "*", "inputs.ORIGINAL_TAG", "code-injection", "generated"] + - ["kubescape/kubescape", "*", "inputs.SUB_STRING", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/kubeshop_botkube.model.yml b/ql/lib/ext/generated/composite-actions/kubeshop_botkube.model.yml new file mode 100644 index 00000000000..98d2d8bcbf7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/kubeshop_botkube.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["kubeshop/botkube", "*", "inputs.username", "code-injection", "generated"] + - ["kubeshop/botkube", "*", "inputs.access_token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/kyverno_kyverno.model.yml b/ql/lib/ext/generated/composite-actions/kyverno_kyverno.model.yml new file mode 100644 index 00000000000..57fb2e71064 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/kyverno_kyverno.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["kyverno/kyverno", "*", "inputs.version", "code-injection", "generated"] + - ["kyverno/kyverno", "*", "inputs.sbom-name", "code-injection", "generated"] + - ["kyverno/kyverno", "*", "inputs.makefile-target", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/lancedb_lance.model.yml b/ql/lib/ext/generated/composite-actions/lancedb_lance.model.yml new file mode 100644 index 00000000000..8a216b97e1e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/lancedb_lance.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["lancedb/lance", "*", "inputs.repo", "code-injection", "generated"] + - ["lancedb/lance", "*", "inputs.vcpkg_token", "code-injection", "generated"] + - ["lancedb/lance", "*", "inputs.part", "code-injection", "generated"] + - ["lancedb/lance", "*", "inputs.arm-build", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/launchdarkly_ios-client-sdk.model.yml b/ql/lib/ext/generated/composite-actions/launchdarkly_ios-client-sdk.model.yml new file mode 100644 index 00000000000..735413808ec --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/launchdarkly_ios-client-sdk.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["launchdarkly/ios-client-sdk", "*", "inputs.ios-sim", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/layer5labs_meshmap-snapshot.model.yml b/ql/lib/ext/generated/composite-actions/layer5labs_meshmap-snapshot.model.yml new file mode 100644 index 00000000000..54334359d0e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/layer5labs_meshmap-snapshot.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["layer5labs/meshmap-snapshot", "*", "inputs.assetLocation", "code-injection", "generated"] + - ["layer5labs/meshmap-snapshot", "*", "inputs.mesheryToken", "code-injection", "generated"] + - ["layer5labs/meshmap-snapshot", "*", "inputs.application_url", "code-injection", "generated"] + - ["layer5labs/meshmap-snapshot", "*", "inputs.prNumber", "code-injection", "generated"] + - ["layer5labs/meshmap-snapshot", "*", "inputs.designID", "code-injection", "generated"] + - ["layer5labs/meshmap-snapshot", "*", "inputs.application_type", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ldc-developers_ldc.model.yml b/ql/lib/ext/generated/composite-actions/ldc-developers_ldc.model.yml new file mode 100644 index 00000000000..67826ea9c0f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ldc-developers_ldc.model.yml @@ -0,0 +1,15 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ldc-developers/ldc", "*", "inputs.cmake_flags", "code-injection", "generated"] + - ["ldc-developers/ldc", "*", "inputs.build_targets", "code-injection", "generated"] + - ["ldc-developers/ldc", "*", "inputs.host_dc", "code-injection", "generated"] + - ["ldc-developers/ldc", "*", "inputs.llvm_dir", "code-injection", "generated"] + - ["ldc-developers/ldc", "*", "inputs.build_dir", "code-injection", "generated"] + - ["ldc-developers/ldc", "*", "inputs.arch", "code-injection", "generated"] + - ["ldc-developers/ldc", "*", "inputs.os", "code-injection", "generated"] + - ["ldc-developers/ldc", "*", "inputs.cross_target_triple", "code-injection", "generated"] + - ["ldc-developers/ldc", "*", "inputs.ios_deployment_target", "code-injection", "generated"] + - ["ldc-developers/ldc", "*", "inputs.cross_compiling", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ledgerhq_ledger-live.model.yml b/ql/lib/ext/generated/composite-actions/ledgerhq_ledger-live.model.yml new file mode 100644 index 00000000000..d0540414702 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ledgerhq_ledger-live.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ledgerhq/ledger-live", "*", "inputs.os", "code-injection", "generated"] + - ["ledgerhq/ledger-live", "*", "inputs.turborepo-server-port", "code-injection", "generated"] + - ["ledgerhq/ledger-live", "*", "inputs.turbo-server-token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/lerna_lerna.model.yml b/ql/lib/ext/generated/composite-actions/lerna_lerna.model.yml new file mode 100644 index 00000000000..9020a979bbb --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/lerna_lerna.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["lerna/lerna", "*", "inputs.install-command", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/lf-edge_eve.model.yml b/ql/lib/ext/generated/composite-actions/lf-edge_eve.model.yml new file mode 100644 index 00000000000..91c84fda1d1 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/lf-edge_eve.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["lf-edge/eve", "*", "inputs.command", "code-injection", "generated"] + - ["lf-edge/eve", "*", "inputs.dockerhub-account", "code-injection", "generated"] + - ["lf-edge/eve", "*", "inputs.dockerhub-token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/libgit2_libgit2.model.yml b/ql/lib/ext/generated/composite-actions/libgit2_libgit2.model.yml new file mode 100644 index 00000000000..5031ff1e4ca --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/libgit2_libgit2.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["libgit2/libgit2", "*", "inputs.command", "code-injection", "generated"] + - ["libgit2/libgit2", "*", "inputs.container-version", "code-injection", "generated"] + - ["libgit2/libgit2", "*", "inputs.container", "code-injection", "generated"] + - ["libgit2/libgit2", "*", "inputs.base", "code-injection", "generated"] + - ["libgit2/libgit2", "*", "inputs.config-path", "code-injection", "generated"] + - ["libgit2/libgit2", "*", "inputs.registry", "code-injection", "generated"] + - ["libgit2/libgit2", "*", "inputs.dockerfile", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/lightning-ai_pytorch-lightning.model.yml b/ql/lib/ext/generated/composite-actions/lightning-ai_pytorch-lightning.model.yml new file mode 100644 index 00000000000..fc3a7ebe253 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/lightning-ai_pytorch-lightning.model.yml @@ -0,0 +1,13 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["lightning-ai/pytorch-lightning", "*", "inputs.name", "code-injection", "generated"] + - ["lightning-ai/pytorch-lightning", "*", "inputs.pkg-folder", "code-injection", "generated"] + - ["lightning-ai/pytorch-lightning", "*", "inputs.pip-flags", "code-injection", "generated"] + - ["lightning-ai/pytorch-lightning", "*", "inputs.pkg-extra", "code-injection", "generated"] + - ["lightning-ai/pytorch-lightning", "*", "inputs.pkg-name", "code-injection", "generated"] + - ["lightning-ai/pytorch-lightning", "*", "inputs.nb-dirs", "code-injection", "generated"] + - ["lightning-ai/pytorch-lightning", "*", "inputs.wheel-dir", "code-injection", "generated"] + - ["lightning-ai/pytorch-lightning", "*", "inputs.torch-url", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/lightning-ai_torchmetrics.model.yml b/ql/lib/ext/generated/composite-actions/lightning-ai_torchmetrics.model.yml new file mode 100644 index 00000000000..b7a664d512f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/lightning-ai_torchmetrics.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["lightning-ai/torchmetrics", "*", "inputs.pypi-dir", "code-injection", "generated"] + - ["lightning-ai/torchmetrics", "*", "inputs.torch-url", "code-injection", "generated"] + - ["lightning-ai/torchmetrics", "*", "inputs.pytorch-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/linkerd_linkerd2.model.yml b/ql/lib/ext/generated/composite-actions/linkerd_linkerd2.model.yml new file mode 100644 index 00000000000..234f13b7387 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/linkerd_linkerd2.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["linkerd/linkerd2", "*", "inputs.component", "code-injection", "generated"] + - ["linkerd/linkerd2", "*", "inputs.docker-registry", "code-injection", "generated"] + - ["linkerd/linkerd2", "*", "inputs.docker-ghcr-username", "code-injection", "generated"] + - ["linkerd/linkerd2", "*", "inputs.docker-ghcr-pat", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/logseq_publish-spa.model.yml b/ql/lib/ext/generated/composite-actions/logseq_publish-spa.model.yml new file mode 100644 index 00000000000..164ba02c42b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/logseq_publish-spa.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["logseq/publish-spa", "*", "inputs.accent-color", "code-injection", "generated"] + - ["logseq/publish-spa", "*", "inputs.theme-mode", "code-injection", "generated"] + - ["logseq/publish-spa", "*", "inputs.graph-directory", "code-injection", "generated"] + - ["logseq/publish-spa", "*", "inputs.output-directory", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/macvim-dev_macvim.model.yml b/ql/lib/ext/generated/composite-actions/macvim-dev_macvim.model.yml new file mode 100644 index 00000000000..17fb61eeeb1 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/macvim-dev_macvim.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["macvim-dev/macvim", "*", "inputs.contents", "code-injection", "generated"] + - ["macvim-dev/macvim", "*", "inputs.formula", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/mamba-org_mamba.model.yml b/ql/lib/ext/generated/composite-actions/mamba-org_mamba.model.yml new file mode 100644 index 00000000000..8513c7da64d --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/mamba-org_mamba.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["mamba-org/mamba", "*", "inputs.key_suffix", "code-injection", "generated"] + - ["mamba-org/mamba", "*", "inputs.key_base", "code-injection", "generated"] + - ["mamba-org/mamba", "*", "inputs.key_prefix", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/maplibre_maplibre-native.model.yml b/ql/lib/ext/generated/composite-actions/maplibre_maplibre-native.model.yml new file mode 100644 index 00000000000..a4ab8f025d0 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/maplibre_maplibre-native.model.yml @@ -0,0 +1,16 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["maplibre/maplibre-native", "*", "inputs.artifact-name", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.externalData", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.testSpecArn", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.testFilter", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.testType", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.AWS_DEVICE_FARM_DEVICE_POOL_ARN", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.AWS_DEVICE_FARM_PROJECT_ARN", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.testFile", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.appFile", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.testPackageType", "code-injection", "generated"] + - ["maplibre/maplibre-native", "*", "inputs.appType", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/mastodon_mastodon.model.yml b/ql/lib/ext/generated/composite-actions/mastodon_mastodon.model.yml new file mode 100644 index 00000000000..7d82b2d3e9e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/mastodon_mastodon.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["mastodon/mastodon", "*", "inputs.additional-system-dependencies", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/mavlink_qgroundcontrol.model.yml b/ql/lib/ext/generated/composite-actions/mavlink_qgroundcontrol.model.yml new file mode 100644 index 00000000000..e466e17ddb4 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/mavlink_qgroundcontrol.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["mavlink/qgroundcontrol", "*", "inputs.aws_secret_access_key", "code-injection", "generated"] + - ["mavlink/qgroundcontrol", "*", "inputs.aws_key_id", "code-injection", "generated"] + - ["mavlink/qgroundcontrol", "*", "inputs.artifact_name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/mdanalysis_mdanalysis.model.yml b/ql/lib/ext/generated/composite-actions/mdanalysis_mdanalysis.model.yml new file mode 100644 index 00000000000..53881157a23 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/mdanalysis_mdanalysis.model.yml @@ -0,0 +1,13 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["mdanalysis/mdanalysis", "*", "inputs.extra-pip-deps", "code-injection", "generated"] + - ["mdanalysis/mdanalysis", "*", "inputs.full-deps", "code-injection", "generated"] + - ["mdanalysis/mdanalysis", "*", "inputs.micromamba", "code-injection", "generated"] + - ["mdanalysis/mdanalysis", "*", "inputs.mamba", "code-injection", "generated"] + - ["mdanalysis/mdanalysis", "*", "inputs.extra-conda-deps", "code-injection", "generated"] + - ["mdanalysis/mdanalysis", "*", "inputs.isolation", "code-injection", "generated"] + - ["mdanalysis/mdanalysis", "*", "inputs.build-docs", "code-injection", "generated"] + - ["mdanalysis/mdanalysis", "*", "inputs.build-tests", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/medic_cht-core.model.yml b/ql/lib/ext/generated/composite-actions/medic_cht-core.model.yml new file mode 100644 index 00000000000..5ee6e863db6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/medic_cht-core.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["medic/cht-core", "*", "inputs.hostname", "code-injection", "generated"] + - ["medic/cht-core", "*", "inputs.password", "code-injection", "generated"] + - ["medic/cht-core", "*", "inputs.username", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/medusajs_medusa.model.yml b/ql/lib/ext/generated/composite-actions/medusajs_medusa.model.yml new file mode 100644 index 00000000000..3f5a3b658c3 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/medusajs_medusa.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["medusajs/medusa", "*", "inputs.pathToSeedData", "code-injection", "generated"] + - ["medusajs/medusa", "*", "inputs.password", "code-injection", "generated"] + - ["medusajs/medusa", "*", "inputs.email", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/metabase_metabase.model.yml b/ql/lib/ext/generated/composite-actions/metabase_metabase.model.yml new file mode 100644 index 00000000000..f5c13431126 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/metabase_metabase.model.yml @@ -0,0 +1,17 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["metabase/metabase", "*", "inputs.organization_name", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.github_token", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.username", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.test-args", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.clojure-version", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.include-log", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.message", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.mysql", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.postgres", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.openldap", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.maildev", "code-injection", "generated"] + - ["metabase/metabase", "*", "inputs.edition", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/metamask_action-create-release-pr.model.yml b/ql/lib/ext/generated/composite-actions/metamask_action-create-release-pr.model.yml new file mode 100644 index 00000000000..4788f44e856 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/metamask_action-create-release-pr.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["metamask/action-create-release-pr", "*", "inputs.artifacts-path", "code-injection", "generated"] + - ["metamask/action-create-release-pr", "*", "inputs.created-pr-status", "code-injection", "generated"] + - ["metamask/action-create-release-pr", "*", "inputs.release-branch-prefix", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/metamask_action-npm-publish.model.yml b/ql/lib/ext/generated/composite-actions/metamask_action-npm-publish.model.yml new file mode 100644 index 00000000000..7c66229c174 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/metamask_action-npm-publish.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["metamask/action-npm-publish", "*", "inputs.subteam", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/microsoft_fluentui.model.yml b/ql/lib/ext/generated/composite-actions/microsoft_fluentui.model.yml new file mode 100644 index 00000000000..9eb3bdcf5eb --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/microsoft_fluentui.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["microsoft/fluentui", "*", "inputs.workspaces", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/microsoft_playwright.model.yml b/ql/lib/ext/generated/composite-actions/microsoft_playwright.model.yml new file mode 100644 index 00000000000..0db95acd5cd --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/microsoft_playwright.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["microsoft/playwright", "*", "inputs.report_dir", "code-injection", "generated"] + - ["microsoft/playwright", "*", "inputs.connection_string", "code-injection", "generated"] + - ["microsoft/playwright", "*", "inputs.blob_prefix", "code-injection", "generated"] + - ["microsoft/playwright", "*", "inputs.output_dir", "code-injection", "generated"] + - ["microsoft/playwright", "*", "inputs.path", "code-injection", "generated"] + - ["microsoft/playwright", "*", "inputs.namePrefix", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/microsoft_wsl.model.yml b/ql/lib/ext/generated/composite-actions/microsoft_wsl.model.yml new file mode 100644 index 00000000000..785384aa207 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/microsoft_wsl.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["microsoft/wsl", "*", "inputs.comment", "code-injection", "generated"] + - ["microsoft/wsl", "*", "inputs.similar_issues_text", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/milvus-io_milvus.model.yml b/ql/lib/ext/generated/composite-actions/milvus-io_milvus.model.yml new file mode 100644 index 00000000000..24c4fb4bc70 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/milvus-io_milvus.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["milvus-io/milvus", "*", "inputs.tag", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/mlflow_mlflow.model.yml b/ql/lib/ext/generated/composite-actions/mlflow_mlflow.model.yml new file mode 100644 index 00000000000..72575eb7368 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/mlflow_mlflow.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["mlflow/mlflow", "*", "inputs.python-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/modin-project_modin.model.yml b/ql/lib/ext/generated/composite-actions/modin-project_modin.model.yml new file mode 100644 index 00000000000..b2b49fbba09 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/modin-project_modin.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["modin-project/modin", "*", "inputs.parallel", "code-injection", "generated"] + - ["modin-project/modin", "*", "inputs.runner", "code-injection", "generated"] + - ["modin-project/modin", "*", "inputs.activate-environment", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/mozilla_addons-server.model.yml b/ql/lib/ext/generated/composite-actions/mozilla_addons-server.model.yml new file mode 100644 index 00000000000..6755f0d773c --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/mozilla_addons-server.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["mozilla/addons-server", "*", "inputs.run", "code-injection", "generated"] + - ["mozilla/addons-server", "*", "inputs.push", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/mozilla_bedrock.model.yml b/ql/lib/ext/generated/composite-actions/mozilla_bedrock.model.yml new file mode 100644 index 00000000000..1b55ab2d549 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/mozilla_bedrock.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["mozilla/bedrock", "*", "inputs.", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/mozilla_sccache.model.yml b/ql/lib/ext/generated/composite-actions/mozilla_sccache.model.yml new file mode 100644 index 00000000000..84401828721 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/mozilla_sccache.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["mozilla/sccache", "*", "inputs.name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/msys2_setup-msys2.model.yml b/ql/lib/ext/generated/composite-actions/msys2_setup-msys2.model.yml new file mode 100644 index 00000000000..35804a87f05 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/msys2_setup-msys2.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["msys2/setup-msys2", "*", "inputs.systems", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/mumble-voip_mumble.model.yml b/ql/lib/ext/generated/composite-actions/mumble-voip_mumble.model.yml new file mode 100644 index 00000000000..981fe0fd348 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/mumble-voip_mumble.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["mumble-voip/mumble", "*", "inputs.arch", "code-injection", "generated"] + - ["mumble-voip/mumble", "*", "inputs.type", "code-injection", "generated"] + - ["mumble-voip/mumble", "*", "inputs.os", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/nasa_fprime.model.yml b/ql/lib/ext/generated/composite-actions/nasa_fprime.model.yml new file mode 100644 index 00000000000..6c984a676d0 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/nasa_fprime.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["nasa/fprime", "*", "inputs.location", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/nats-io_nats-server.model.yml b/ql/lib/ext/generated/composite-actions/nats-io_nats-server.model.yml new file mode 100644 index 00000000000..1138d37fb5f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/nats-io_nats-server.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["nats-io/nats-server", "*", "inputs.label", "code-injection", "generated"] + - ["nats-io/nats-server", "*", "inputs.hub_password", "code-injection", "generated"] + - ["nats-io/nats-server", "*", "inputs.hub_username", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/nearform-actions_optic-release-automation-action.model.yml b/ql/lib/ext/generated/composite-actions/nearform-actions_optic-release-automation-action.model.yml new file mode 100644 index 00000000000..1418299b39a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/nearform-actions_optic-release-automation-action.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["nearform-actions/optic-release-automation-action", "*", "inputs.build-command", "code-injection", "generated"] + - ["nearform-actions/optic-release-automation-action", "*", "inputs.actor-name", "code-injection", "generated"] + - ["nearform-actions/optic-release-automation-action", "*", "inputs.actor-email", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/nektos_act.model.yml b/ql/lib/ext/generated/composite-actions/nektos_act.model.yml new file mode 100644 index 00000000000..fb67f66ce62 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/nektos_act.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["nektos/act", "*", "inputs.test_input_optional", "code-injection", "generated"] + - ["nektos/act", "*", "inputs.composite-input", "code-injection", "generated"] + - ["nektos/act", "*", "inputs.some", "code-injection", "generated"] + - ["nektos/act", "*", "inputs.test_input_required_with_default_overriden", "code-injection", "generated"] + - ["nektos/act", "*", "inputs.test_input_required_with_default", "code-injection", "generated"] + - ["nektos/act", "*", "inputs.test_input_optional_with_default_overriden", "code-injection", "generated"] + - ["nektos/act", "*", "inputs.test_input_required", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/neo4j-contrib_neo4j-apoc-procedures.model.yml b/ql/lib/ext/generated/composite-actions/neo4j-contrib_neo4j-apoc-procedures.model.yml new file mode 100644 index 00000000000..12aa48431db --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/neo4j-contrib_neo4j-apoc-procedures.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["neo4j-contrib/neo4j-apoc-procedures", "*", "inputs.project-name", "code-injection", "generated"] + - ["neo4j-contrib/neo4j-apoc-procedures", "*", "inputs.gradle-command", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/neondatabase_neon.model.yml b/ql/lib/ext/generated/composite-actions/neondatabase_neon.model.yml new file mode 100644 index 00000000000..336af4b814b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/neondatabase_neon.model.yml @@ -0,0 +1,13 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["neondatabase/neon", "*", "inputs.save_perf_report", "code-injection", "generated"] + - ["neondatabase/neon", "*", "inputs.real_s3_region", "code-injection", "generated"] + - ["neondatabase/neon", "*", "inputs.real_s3_bucket", "code-injection", "generated"] + - ["neondatabase/neon", "*", "inputs.run_with_real_s3", "code-injection", "generated"] + - ["neondatabase/neon", "*", "inputs.run_in_parallel", "code-injection", "generated"] + - ["neondatabase/neon", "*", "inputs.extra_params", "code-injection", "generated"] + - ["neondatabase/neon", "*", "inputs.test_selection", "code-injection", "generated"] + - ["neondatabase/neon", "*", "inputs.build_type", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/neovim_neovim.model.yml b/ql/lib/ext/generated/composite-actions/neovim_neovim.model.yml new file mode 100644 index 00000000000..8d2170c47e2 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/neovim_neovim.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["neovim/neovim", "*", "inputs.install_flags", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/nhost_nhost.model.yml b/ql/lib/ext/generated/composite-actions/nhost_nhost.model.yml new file mode 100644 index 00000000000..854601e3dde --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/nhost_nhost.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["nhost/nhost", "*", "inputs.config", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/nix-community_nixos-wsl.model.yml b/ql/lib/ext/generated/composite-actions/nix-community_nixos-wsl.model.yml new file mode 100644 index 00000000000..8a6074b8796 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/nix-community_nixos-wsl.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["nix-community/nixos-wsl", "*", "inputs.filename", "code-injection", "generated"] + - ["nix-community/nixos-wsl", "*", "inputs.expression", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/novuhq_novu.model.yml b/ql/lib/ext/generated/composite-actions/novuhq_novu.model.yml new file mode 100644 index 00000000000..f305e2a37b3 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/novuhq_novu.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["novuhq/novu", "*", "inputs.tag", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/nymtech_nym.model.yml b/ql/lib/ext/generated/composite-actions/nymtech_nym.model.yml new file mode 100644 index 00000000000..042ca09efa6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/nymtech_nym.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["nymtech/nym", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/obsproject_obs-studio.model.yml b/ql/lib/ext/generated/composite-actions/obsproject_obs-studio.model.yml new file mode 100644 index 00000000000..51d4903fbb1 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/obsproject_obs-studio.model.yml @@ -0,0 +1,19 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["obsproject/obs-studio", "*", "inputs.failCondition", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.checkGlob", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.playtestBranch", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.steamPassword", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.steamUser", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.preview", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.stableBranch", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.betaBranch", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.nightlyBranch", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.tagName", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.customLink", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.customTitle", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.urlPrefix", "code-injection", "generated"] + - ["obsproject/obs-studio", "*", "inputs.sparklePrivateKey", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ocaml_dune.model.yml b/ql/lib/ext/generated/composite-actions/ocaml_dune.model.yml new file mode 100644 index 00000000000..12dc3005260 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ocaml_dune.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ocaml/dune", "*", "inputs.OCAML_COMPILER", "code-injection", "generated"] + - ["ocaml/dune", "*", "inputs.DKML_COMPILER", "code-injection", "generated"] + - ["ocaml/dune", "*", "inputs.DISKUV_OPAM_REPOSITORY", "code-injection", "generated"] + - ["ocaml/dune", "*", "inputs.CONF_DKML_CROSS_TOOLCHAIN", "code-injection", "generated"] + - ["ocaml/dune", "*", "inputs.FDOPEN_OPAMEXE_BOOTSTRAP", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/oneflow-inc_oneflow.model.yml b/ql/lib/ext/generated/composite-actions/oneflow-inc_oneflow.model.yml new file mode 100644 index 00000000000..dfe3b7f4332 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/oneflow-inc_oneflow.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["oneflow-inc/oneflow", "*", "inputs.extra_flags", "code-injection", "generated"] + - ["oneflow-inc/oneflow", "*", "inputs.python_version", "code-injection", "generated"] + - ["oneflow-inc/oneflow", "*", "inputs.cuda_version", "code-injection", "generated"] + - ["oneflow-inc/oneflow", "*", "inputs.tmp_dir", "code-injection", "generated"] + - ["oneflow-inc/oneflow", "*", "inputs.dst_host", "code-injection", "generated"] + - ["oneflow-inc/oneflow", "*", "inputs.dst_path", "code-injection", "generated"] + - ["oneflow-inc/oneflow", "*", "inputs.src_path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/open-telemetry_opentelemetry-ruby-contrib.model.yml b/ql/lib/ext/generated/composite-actions/open-telemetry_opentelemetry-ruby-contrib.model.yml new file mode 100644 index 00000000000..663fada6df9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/open-telemetry_opentelemetry-ruby-contrib.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["open-telemetry/opentelemetry-ruby-contrib", "*", "inputs.gem", "code-injection", "generated"] + - ["open-telemetry/opentelemetry-ruby-contrib", "*", "inputs.latest", "code-injection", "generated"] + - ["open-telemetry/opentelemetry-ruby-contrib", "*", "inputs.ruby", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/open-telemetry_opentelemetry-ruby.model.yml b/ql/lib/ext/generated/composite-actions/open-telemetry_opentelemetry-ruby.model.yml new file mode 100644 index 00000000000..4a53345e6e5 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/open-telemetry_opentelemetry-ruby.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["open-telemetry/opentelemetry-ruby", "*", "inputs.gem", "code-injection", "generated"] + - ["open-telemetry/opentelemetry-ruby", "*", "inputs.ruby", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/open-watcom_open-watcom-v2.model.yml b/ql/lib/ext/generated/composite-actions/open-watcom_open-watcom-v2.model.yml new file mode 100644 index 00000000000..0a18189242d --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/open-watcom_open-watcom-v2.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["open-watcom/open-watcom-v2", "*", "inputs.fullname", "code-injection", "generated"] + - ["open-watcom/open-watcom-v2", "*", "inputs.buildcmd", "code-injection", "generated"] + - ["open-watcom/open-watcom-v2", "*", "inputs.artifact", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/openapitools_openapi-generator.model.yml b/ql/lib/ext/generated/composite-actions/openapitools_openapi-generator.model.yml new file mode 100644 index 00000000000..93ec3ea468d --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/openapitools_openapi-generator.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["openapitools/openapi-generator", "*", "inputs.args", "code-injection", "generated"] + - ["openapitools/openapi-generator", "*", "inputs.name", "code-injection", "generated"] + - ["openapitools/openapi-generator", "*", "inputs.goal", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/openjdk_jdk.model.yml b/ql/lib/ext/generated/composite-actions/openjdk_jdk.model.yml new file mode 100644 index 00000000000..27f5af98f89 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/openjdk_jdk.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["openjdk/jdk", "*", "inputs.debug-suffix", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/opensearch-project_opensearch-net.model.yml b/ql/lib/ext/generated/composite-actions/opensearch-project_opensearch-net.model.yml new file mode 100644 index 00000000000..125dd8324d2 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/opensearch-project_opensearch-net.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["opensearch-project/opensearch-net", "*", "inputs.version", "code-injection", "generated"] + - ["opensearch-project/opensearch-net", "*", "inputs.build_script", "code-injection", "generated"] + - ["opensearch-project/opensearch-net", "*", "inputs.plugins_output_directory", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/opensearch-project_security.model.yml b/ql/lib/ext/generated/composite-actions/opensearch-project_security.model.yml new file mode 100644 index 00000000000..dfa24454444 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/opensearch-project_security.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["opensearch-project/security", "*", "inputs.plugin-branch", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/opentrons_opentrons.model.yml b/ql/lib/ext/generated/composite-actions/opentrons_opentrons.model.yml new file mode 100644 index 00000000000..9469e745ffc --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/opentrons_opentrons.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["opentrons/opentrons", "*", "inputs.destPrefix", "code-injection", "generated"] + - ["opentrons/opentrons", "*", "inputs.domain", "code-injection", "generated"] + - ["opentrons/opentrons", "*", "inputs.distPath", "code-injection", "generated"] + - ["opentrons/opentrons", "*", "inputs.project", "code-injection", "generated"] + - ["opentrons/opentrons", "*", "inputs.python-version", "code-injection", "generated"] + - ["opentrons/opentrons", "*", "inputs.repository_url", "code-injection", "generated"] + - ["opentrons/opentrons", "*", "inputs.password", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/openvinotoolkit_openvino.model.yml b/ql/lib/ext/generated/composite-actions/openvinotoolkit_openvino.model.yml new file mode 100644 index 00000000000..6e34a2cf592 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/openvinotoolkit_openvino.model.yml @@ -0,0 +1,16 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["openvinotoolkit/openvino", "*", "inputs.skip_when_only_listed_files_changed", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.skip_when_only_listed_labels_set", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.labeler_config", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.components_config_schema", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.components_config", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.component_pattern", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.ref_name", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.repository", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.commit_sha", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.pr", "code-injection", "generated"] + - ["openvinotoolkit/openvino", "*", "inputs.pip-cache-path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/openzeppelin_openzeppelin-contracts-upgradeable.model.yml b/ql/lib/ext/generated/composite-actions/openzeppelin_openzeppelin-contracts-upgradeable.model.yml new file mode 100644 index 00000000000..4ea72b28476 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/openzeppelin_openzeppelin-contracts-upgradeable.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["openzeppelin/openzeppelin-contracts-upgradeable", "*", "inputs.layout", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts-upgradeable", "*", "inputs.out_layout", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts-upgradeable", "*", "inputs.ref_layout", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts-upgradeable", "*", "inputs.buildinfo", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts-upgradeable", "*", "inputs.report", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts-upgradeable", "*", "inputs.out_report", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts-upgradeable", "*", "inputs.ref_report", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/openzeppelin_openzeppelin-contracts.model.yml b/ql/lib/ext/generated/composite-actions/openzeppelin_openzeppelin-contracts.model.yml new file mode 100644 index 00000000000..a0b7bca54ad --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/openzeppelin_openzeppelin-contracts.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["openzeppelin/openzeppelin-contracts", "*", "inputs.layout", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts", "*", "inputs.out_layout", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts", "*", "inputs.ref_layout", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts", "*", "inputs.buildinfo", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts", "*", "inputs.report", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts", "*", "inputs.out_report", "code-injection", "generated"] + - ["openzeppelin/openzeppelin-contracts", "*", "inputs.ref_report", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/oppia_oppia.model.yml b/ql/lib/ext/generated/composite-actions/oppia_oppia.model.yml new file mode 100644 index 00000000000..816a18fe73b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/oppia_oppia.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["oppia/oppia", "*", "inputs.webhook-url", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/oracle_graal.model.yml b/ql/lib/ext/generated/composite-actions/oracle_graal.model.yml new file mode 100644 index 00000000000..bf8cbfc01e0 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/oracle_graal.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["oracle/graal", "*", "inputs.components", "code-injection", "generated"] + - ["oracle/graal", "*", "inputs.native-images", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/oracle_truffleruby.model.yml b/ql/lib/ext/generated/composite-actions/oracle_truffleruby.model.yml new file mode 100644 index 00000000000..bf88ed5c0a1 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/oracle_truffleruby.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["oracle/truffleruby", "*", "inputs.archive", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/orhun_git-cliff.model.yml b/ql/lib/ext/generated/composite-actions/orhun_git-cliff.model.yml new file mode 100644 index 00000000000..05c2a1cfaf6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/orhun_git-cliff.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["orhun/git-cliff", "*", "inputs.command", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/oven-sh_bun.model.yml b/ql/lib/ext/generated/composite-actions/oven-sh_bun.model.yml new file mode 100644 index 00000000000..46a8fd4fb8b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/oven-sh_bun.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["oven-sh/bun", "*", "inputs.download-url", "code-injection", "generated"] + - ["oven-sh/bun", "*", "inputs.bun-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/owntracks_android.model.yml b/ql/lib/ext/generated/composite-actions/owntracks_android.model.yml new file mode 100644 index 00000000000..32467f8c3f2 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/owntracks_android.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["owntracks/android", "*", "inputs.name", "code-injection", "generated"] + - ["owntracks/android", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/pandas-dev_pandas.model.yml b/ql/lib/ext/generated/composite-actions/pandas-dev_pandas.model.yml new file mode 100644 index 00000000000..3f4cc69ba75 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/pandas-dev_pandas.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["pandas-dev/pandas", "*", "inputs.meson_args", "code-injection", "generated"] + - ["pandas-dev/pandas", "*", "inputs.editable", "code-injection", "generated"] + - ["pandas-dev/pandas", "*", "inputs.cflags_adds", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/pardeike_harmony.model.yml b/ql/lib/ext/generated/composite-actions/pardeike_harmony.model.yml new file mode 100644 index 00000000000..8b8ebf88b46 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/pardeike_harmony.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["pardeike/harmony", "*", "inputs.architecture", "code-injection", "generated"] + - ["pardeike/harmony", "*", "inputs.build_configuration", "code-injection", "generated"] + - ["pardeike/harmony", "*", "inputs.target_framework_array", "code-injection", "generated"] + - ["pardeike/harmony", "*", "inputs.target_framework", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/pennylaneai_pennylane.model.yml b/ql/lib/ext/generated/composite-actions/pennylaneai_pennylane.model.yml new file mode 100644 index 00000000000..4bc0d5f660d --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/pennylaneai_pennylane.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["pennylaneai/pennylane", "*", "inputs.requirements_file", "code-injection", "generated"] + - ["pennylaneai/pennylane", "*", "inputs.additional_pip_packages", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/phalcon_cphalcon.model.yml b/ql/lib/ext/generated/composite-actions/phalcon_cphalcon.model.yml new file mode 100644 index 00000000000..5f38860c86d --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/phalcon_cphalcon.model.yml @@ -0,0 +1,13 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["phalcon/cphalcon", "*", "inputs.target-name", "code-injection", "generated"] + - ["phalcon/cphalcon", "*", "inputs.ext-path", "code-injection", "generated"] + - ["phalcon/cphalcon", "*", "inputs.pecl", "code-injection", "generated"] + - ["phalcon/cphalcon", "*", "inputs.arch", "code-injection", "generated"] + - ["phalcon/cphalcon", "*", "inputs.msvc", "code-injection", "generated"] + - ["phalcon/cphalcon", "*", "inputs.ts", "code-injection", "generated"] + - ["phalcon/cphalcon", "*", "inputs.php_version", "code-injection", "generated"] + - ["phalcon/cphalcon", "*", "inputs.php-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/philosowaffle_peloton-to-garmin.model.yml b/ql/lib/ext/generated/composite-actions/philosowaffle_peloton-to-garmin.model.yml new file mode 100644 index 00000000000..8b45d92a5e0 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/philosowaffle_peloton-to-garmin.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["philosowaffle/peloton-to-garmin", "*", "inputs.framework", "code-injection", "generated"] + - ["philosowaffle/peloton-to-garmin", "*", "inputs.os", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/php_php-src.model.yml b/ql/lib/ext/generated/composite-actions/php_php-src.model.yml new file mode 100644 index 00000000000..7767c649780 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/php_php-src.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["php/php-src", "*", "inputs.jitType", "code-injection", "generated"] + - ["php/php-src", "*", "inputs.runTestsParameters", "code-injection", "generated"] + - ["php/php-src", "*", "inputs.token", "code-injection", "generated"] + - ["php/php-src", "*", "inputs.configurationParameters", "code-injection", "generated"] + - ["php/php-src", "*", "inputs.libmysql", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/phpdocumentor_phpdocumentor.model.yml b/ql/lib/ext/generated/composite-actions/phpdocumentor_phpdocumentor.model.yml new file mode 100644 index 00000000000..419909764b7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/phpdocumentor_phpdocumentor.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["phpdocumentor/phpdocumentor", "*", "inputs.passphrase", "code-injection", "generated"] + - ["phpdocumentor/phpdocumentor", "*", "inputs.secret-key", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/pinecone-io_pinecone-python-client.model.yml b/ql/lib/ext/generated/composite-actions/pinecone-io_pinecone-python-client.model.yml new file mode 100644 index 00000000000..6e2b5247f29 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/pinecone-io_pinecone-python-client.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["pinecone-io/pinecone-python-client", "*", "inputs.googleapis_common_protos_version", "code-injection", "generated"] + - ["pinecone-io/pinecone-python-client", "*", "inputs.protobuf_version", "code-injection", "generated"] + - ["pinecone-io/pinecone-python-client", "*", "inputs.lz4_version", "code-injection", "generated"] + - ["pinecone-io/pinecone-python-client", "*", "inputs.grpcio_version", "code-injection", "generated"] + - ["pinecone-io/pinecone-python-client", "*", "inputs.pinecone_client_version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/pixijs_pixijs.model.yml b/ql/lib/ext/generated/composite-actions/pixijs_pixijs.model.yml new file mode 100644 index 00000000000..d012a6f2fbb --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/pixijs_pixijs.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["pixijs/pixijs", "*", "inputs.npm-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/posthog_posthog.model.yml b/ql/lib/ext/generated/composite-actions/posthog_posthog.model.yml new file mode 100644 index 00000000000..aead619b40b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/posthog_posthog.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["posthog/posthog", "*", "inputs.group", "code-injection", "generated"] + - ["posthog/posthog", "*", "inputs.concurrency", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/primer_react.model.yml b/ql/lib/ext/generated/composite-actions/primer_react.model.yml new file mode 100644 index 00000000000..b82360205f7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/primer_react.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["primer/react", "*", "inputs.token", "code-injection", "generated"] + - ["primer/react", "*", "inputs.schedule-id", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/project-chip_connectedhomeip.model.yml b/ql/lib/ext/generated/composite-actions/project-chip_connectedhomeip.model.yml new file mode 100644 index 00000000000..e5fad4e5256 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/project-chip_connectedhomeip.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["project-chip/connectedhomeip", "*", "inputs.with", "code-injection", "generated"] + - ["project-chip/connectedhomeip", "*", "inputs.action", "code-injection", "generated"] + - ["project-chip/connectedhomeip", "*", "inputs.platform", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/projectnessie_nessie.model.yml b/ql/lib/ext/generated/composite-actions/projectnessie_nessie.model.yml new file mode 100644 index 00000000000..71f90682b1b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/projectnessie_nessie.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["projectnessie/nessie", "*", "inputs.job-name", "code-injection", "generated"] + - ["projectnessie/nessie", "*", "inputs.java-version", "code-injection", "generated"] + - ["projectnessie/nessie", "*", "inputs.job-instance", "code-injection", "generated"] + - ["projectnessie/nessie", "*", "inputs.job-id", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/psf_black.model.yml b/ql/lib/ext/generated/composite-actions/psf_black.model.yml new file mode 100644 index 00000000000..07421b98859 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/psf_black.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["psf/black", "*", "inputs.summary", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/pyca_cryptography.model.yml b/ql/lib/ext/generated/composite-actions/pyca_cryptography.model.yml new file mode 100644 index 00000000000..81fbb3ae9e4 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/pyca_cryptography.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["pyca/cryptography", "*", "inputs.key", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/pyg-team_pytorch_geometric.model.yml b/ql/lib/ext/generated/composite-actions/pyg-team_pytorch_geometric.model.yml new file mode 100644 index 00000000000..9587351ce1d --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/pyg-team_pytorch_geometric.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["pyg-team/pytorch/geometric", "*", "inputs.torchvision-version", "code-injection", "generated"] + - ["pyg-team/pytorch/geometric", "*", "inputs.cuda-version", "code-injection", "generated"] + - ["pyg-team/pytorch/geometric", "*", "inputs.torch-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/python-poetry_poetry.model.yml b/ql/lib/ext/generated/composite-actions/python-poetry_poetry.model.yml new file mode 100644 index 00000000000..080835504a6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/python-poetry_poetry.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["python-poetry/poetry", "*", "inputs.args", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/python_mypy.model.yml b/ql/lib/ext/generated/composite-actions/python_mypy.model.yml new file mode 100644 index 00000000000..86ce393fbc5 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/python_mypy.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["python/mypy", "*", "inputs.install_project_dependencies", "code-injection", "generated"] + - ["python/mypy", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/quarto-dev_quarto-cli.model.yml b/ql/lib/ext/generated/composite-actions/quarto-dev_quarto-cli.model.yml new file mode 100644 index 00000000000..182558589d7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/quarto-dev_quarto-cli.model.yml @@ -0,0 +1,15 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["quarto-dev/quarto-cli", "*", "inputs.keychain-pw", "code-injection", "generated"] + - ["quarto-dev/quarto-cli", "*", "inputs.keychain", "code-injection", "generated"] + - ["quarto-dev/quarto-cli", "*", "inputs.certificate-file", "code-injection", "generated"] + - ["quarto-dev/quarto-cli", "*", "inputs.certificate-value", "code-injection", "generated"] + - ["quarto-dev/quarto-cli", "*", "inputs.working-dir", "code-injection", "generated"] + - ["quarto-dev/quarto-cli", "*", "inputs.bucket", "code-injection", "generated"] + - ["quarto-dev/quarto-cli", "*", "inputs.base-url", "code-injection", "generated"] + - ["quarto-dev/quarto-cli", "*", "inputs.files", "code-injection", "generated"] + - ["quarto-dev/quarto-cli", "*", "inputs.binary-name", "code-injection", "generated"] + - ["quarto-dev/quarto-cli", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/quay_clair.model.yml b/ql/lib/ext/generated/composite-actions/quay_clair.model.yml new file mode 100644 index 00000000000..1839670baa2 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/quay_clair.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["quay/clair", "*", "inputs.tag", "code-injection", "generated"] + - ["quay/clair", "*", "inputs.repo", "code-injection", "generated"] + - ["quay/clair", "*", "inputs.quay", "code-injection", "generated"] + - ["quay/clair", "*", "inputs.duration", "code-injection", "generated"] + - ["quay/clair", "*", "inputs.token", "code-injection", "generated"] + - ["quay/clair", "*", "inputs.dir", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/quickwit-oss_quickwit.model.yml b/ql/lib/ext/generated/composite-actions/quickwit-oss_quickwit.model.yml new file mode 100644 index 00000000000..203dabaa3b9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/quickwit-oss_quickwit.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["quickwit-oss/quickwit", "*", "inputs.target", "code-injection", "generated"] + - ["quickwit-oss/quickwit", "*", "inputs.version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/r-lib_actions.model.yml b/ql/lib/ext/generated/composite-actions/r-lib_actions.model.yml new file mode 100644 index 00000000000..7247d125324 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/r-lib_actions.model.yml @@ -0,0 +1,18 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["r-lib/actions", "*", "inputs.lockfile-create-lib", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.dependencies", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.upgrade", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.pak-version", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.profile", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.install-pandoc", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.extra-packages", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.packages", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.needs", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.error-on", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.build_args", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.args", "code-injection", "generated"] + - ["r-lib/actions", "*", "inputs.check-dir", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/randombit_botan.model.yml b/ql/lib/ext/generated/composite-actions/randombit_botan.model.yml new file mode 100644 index 00000000000..22c8a56deac --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/randombit_botan.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["randombit/botan", "*", "inputs.target", "code-injection", "generated"] + - ["randombit/botan", "*", "inputs.arch", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/raspberrypi_documentation.model.yml b/ql/lib/ext/generated/composite-actions/raspberrypi_documentation.model.yml new file mode 100644 index 00000000000..7476425a35f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/raspberrypi_documentation.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["raspberrypi/documentation", "*", "inputs.secondary_host", "code-injection", "generated"] + - ["raspberrypi/documentation", "*", "inputs.destination", "code-injection", "generated"] + - ["raspberrypi/documentation", "*", "inputs.source", "code-injection", "generated"] + - ["raspberrypi/documentation", "*", "inputs.bastion_host", "code-injection", "generated"] + - ["raspberrypi/documentation", "*", "inputs.primary_host", "code-injection", "generated"] + - ["raspberrypi/documentation", "*", "inputs.public_bastion_host_keys", "code-injection", "generated"] + - ["raspberrypi/documentation", "*", "inputs.private_ssh_key", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ray-project_kuberay.model.yml b/ql/lib/ext/generated/composite-actions/ray-project_kuberay.model.yml new file mode 100644 index 00000000000..3c96c1b159d --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ray-project_kuberay.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ray-project/kuberay", "*", "inputs.ray_version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/readthedocs_actions.model.yml b/ql/lib/ext/generated/composite-actions/readthedocs_actions.model.yml new file mode 100644 index 00000000000..da9def79964 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/readthedocs_actions.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["readthedocs/actions", "*", "inputs.single-version", "code-injection", "generated"] + - ["readthedocs/actions", "*", "inputs.platform", "code-injection", "generated"] + - ["readthedocs/actions", "*", "inputs.message-template", "code-injection", "generated"] + - ["readthedocs/actions", "*", "inputs.project-language", "code-injection", "generated"] + - ["readthedocs/actions", "*", "inputs.project-slug", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/reflex-dev_reflex.model.yml b/ql/lib/ext/generated/composite-actions/reflex-dev_reflex.model.yml new file mode 100644 index 00000000000..80c91739684 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/reflex-dev_reflex.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["reflex-dev/reflex", "*", "inputs.create-venv-at-path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/renovatebot_renovate.model.yml b/ql/lib/ext/generated/composite-actions/renovatebot_renovate.model.yml new file mode 100644 index 00000000000..2121bb23710 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/renovatebot_renovate.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["renovatebot/renovate", "*", "inputs.node-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/rethinkdb_rethinkdb.model.yml b/ql/lib/ext/generated/composite-actions/rethinkdb_rethinkdb.model.yml new file mode 100644 index 00000000000..f0acc305672 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/rethinkdb_rethinkdb.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["rethinkdb/rethinkdb", "*", "inputs.command", "code-injection", "generated"] + - ["rethinkdb/rethinkdb", "*", "inputs.install_command", "code-injection", "generated"] + - ["rethinkdb/rethinkdb", "*", "inputs.env_activate", "code-injection", "generated"] + - ["rethinkdb/rethinkdb", "*", "inputs.default_python_driver_commit_hash", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/risc0_risc0.model.yml b/ql/lib/ext/generated/composite-actions/risc0_risc0.model.yml new file mode 100644 index 00000000000..f099314b16e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/risc0_risc0.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["risc0/risc0", "*", "inputs.key", "code-injection", "generated"] + - ["risc0/risc0", "*", "inputs.components", "code-injection", "generated"] + - ["risc0/risc0", "*", "inputs.targets", "code-injection", "generated"] + - ["risc0/risc0", "*", "inputs.toolchain", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/rocketchat_rocket.chat.model.yml b/ql/lib/ext/generated/composite-actions/rocketchat_rocket.chat.model.yml new file mode 100644 index 00000000000..971cd92e3cd --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/rocketchat_rocket.chat.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["rocketchat/rocket.chat", "*", "inputs.build-containers", "code-injection", "generated"] + - ["rocketchat/rocket.chat", "*", "inputs.release", "code-injection", "generated"] + - ["rocketchat/rocket.chat", "*", "inputs.docker-tag", "code-injection", "generated"] + - ["rocketchat/rocket.chat", "*", "inputs.root-dir", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/rook_rook.model.yml b/ql/lib/ext/generated/composite-actions/rook_rook.model.yml new file mode 100644 index 00000000000..42aba6b02dd --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/rook_rook.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["rook/rook", "*", "inputs.use-tmate", "code-injection", "generated"] + - ["rook/rook", "*", "inputs.kubernetes-version", "code-injection", "generated"] + - ["rook/rook", "*", "inputs.additional-namespace", "code-injection", "generated"] + - ["rook/rook", "*", "inputs.name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/roots_trellis.model.yml b/ql/lib/ext/generated/composite-actions/roots_trellis.model.yml new file mode 100644 index 00000000000..71d71f6cb21 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/roots_trellis.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["roots/trellis", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ruby_debug.model.yml b/ql/lib/ext/generated/composite-actions/ruby_debug.model.yml new file mode 100644 index 00000000000..60a29d3edf7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ruby_debug.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ruby/debug", "*", "inputs.report-path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/ruby_ruby.model.yml b/ql/lib/ext/generated/composite-actions/ruby_ruby.model.yml new file mode 100644 index 00000000000..84d174e5a05 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/ruby_ruby.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["ruby/ruby", "*", "inputs.builddir", "code-injection", "generated"] + - ["ruby/ruby", "*", "inputs.srcdir", "code-injection", "generated"] + - ["ruby/ruby", "*", "inputs.test-opts", "code-injection", "generated"] + - ["ruby/ruby", "*", "inputs.report-path", "code-injection", "generated"] + - ["ruby/ruby", "*", "inputs.launchable-token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/rusefi_rusefi.model.yml b/ql/lib/ext/generated/composite-actions/rusefi_rusefi.model.yml new file mode 100644 index 00000000000..5cc3a3a7475 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/rusefi_rusefi.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["rusefi/rusefi", "*", "inputs.RUSEFI_OBFUSCATED_PUBLIC_SSH_SERVER", "code-injection", "generated"] + - ["rusefi/rusefi", "*", "inputs.RUSEFI_OBFUSCATED_PUBLIC_SSH_PASS", "code-injection", "generated"] + - ["rusefi/rusefi", "*", "inputs.RUSEFI_OBFUSCATED_PUBLIC_SSH_USER", "code-injection", "generated"] + - ["rusefi/rusefi", "*", "inputs.sim_output", "code-injection", "generated"] + - ["rusefi/rusefi", "*", "inputs.RUSEFI_SSH_PASS", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/saltstack_salt.model.yml b/ql/lib/ext/generated/composite-actions/saltstack_salt.model.yml new file mode 100644 index 00000000000..cee842ae1c6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/saltstack_salt.model.yml @@ -0,0 +1,14 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["saltstack/salt", "*", "inputs.version", "code-injection", "generated"] + - ["saltstack/salt", "*", "inputs.upload-chunk-size", "code-injection", "generated"] + - ["saltstack/salt", "*", "inputs.restore-keys", "code-injection", "generated"] + - ["saltstack/salt", "*", "inputs.save-always", "code-injection", "generated"] + - ["saltstack/salt", "*", "inputs.lookup-only", "code-injection", "generated"] + - ["saltstack/salt", "*", "inputs.fail-on-cache-miss", "code-injection", "generated"] + - ["saltstack/salt", "*", "inputs.enableCrossOsArchive", "code-injection", "generated"] + - ["saltstack/salt", "*", "inputs.key", "code-injection", "generated"] + - ["saltstack/salt", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/sap_sapmachine.model.yml b/ql/lib/ext/generated/composite-actions/sap_sapmachine.model.yml new file mode 100644 index 00000000000..535e832c1c3 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/sap_sapmachine.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["sap/sapmachine", "*", "inputs.debug-suffix", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/scala-native_scala-native.model.yml b/ql/lib/ext/generated/composite-actions/scala-native_scala-native.model.yml new file mode 100644 index 00000000000..e1902fb488f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/scala-native_scala-native.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["scala-native/scala-native", "*", "inputs.llvm-version", "code-injection", "generated"] + - ["scala-native/scala-native", "*", "inputs.scala-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/scitools_iris.model.yml b/ql/lib/ext/generated/composite-actions/scitools_iris.model.yml new file mode 100644 index 00000000000..2ede3df9864 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/scitools_iris.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["scitools/iris", "*", "inputs.version", "code-injection", "generated"] + - ["scitools/iris", "*", "inputs.install_packages", "code-injection", "generated"] + - ["scitools/iris", "*", "inputs.env_name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/scylladb_scylla-operator.model.yml b/ql/lib/ext/generated/composite-actions/scylladb_scylla-operator.model.yml new file mode 100644 index 00000000000..1bea0aef935 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/scylladb_scylla-operator.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["scylladb/scylla-operator", "*", "inputs.containerImageName", "code-injection", "generated"] + - ["scylladb/scylla-operator", "*", "inputs.githubToken", "code-injection", "generated"] + - ["scylladb/scylla-operator", "*", "inputs.githubRef", "code-injection", "generated"] + - ["scylladb/scylla-operator", "*", "inputs.githubRepository", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/shader-slang_slang.model.yml b/ql/lib/ext/generated/composite-actions/shader-slang_slang.model.yml new file mode 100644 index 00000000000..4a8bae9d2a1 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/shader-slang_slang.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["shader-slang/slang", "*", "inputs.platform", "code-injection", "generated"] + - ["shader-slang/slang", "*", "inputs.os", "code-injection", "generated"] + - ["shader-slang/slang", "*", "inputs.runs-on", "code-injection", "generated"] + - ["shader-slang/slang", "*", "inputs.config", "code-injection", "generated"] + - ["shader-slang/slang", "*", "inputs.compiler", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/shaka-project_shaka-player.model.yml b/ql/lib/ext/generated/composite-actions/shaka-project_shaka-player.model.yml new file mode 100644 index 00000000000..c63ed017ae1 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/shaka-project_shaka-player.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["shaka-project/shaka-player", "*", "inputs.state", "code-injection", "generated"] + - ["shaka-project/shaka-player", "*", "inputs.context", "code-injection", "generated"] + - ["shaka-project/shaka-player", "*", "inputs.job_name", "code-injection", "generated"] + - ["shaka-project/shaka-player", "*", "inputs.token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/shakacode_react-webpack-rails-tutorial.model.yml b/ql/lib/ext/generated/composite-actions/shakacode_react-webpack-rails-tutorial.model.yml new file mode 100644 index 00000000000..544fc4b9951 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/shakacode_react-webpack-rails-tutorial.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["shakacode/react-webpack-rails-tutorial", "*", "inputs.org", "code-injection", "generated"] + - ["shakacode/react-webpack-rails-tutorial", "*", "inputs.app_name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/simple-icons_simple-icons.model.yml b/ql/lib/ext/generated/composite-actions/simple-icons_simple-icons.model.yml new file mode 100644 index 00000000000..2d3871a2231 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/simple-icons_simple-icons.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["simple-icons/simple-icons", "*", "inputs.issue_number", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/slint-ui_slint.model.yml b/ql/lib/ext/generated/composite-actions/slint-ui_slint.model.yml new file mode 100644 index 00000000000..4f18723df38 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/slint-ui_slint.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["slint-ui/slint", "*", "inputs.extra-packages", "code-injection", "generated"] + - ["slint-ui/slint", "*", "inputs.binary", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/solidusio_solidus.model.yml b/ql/lib/ext/generated/composite-actions/solidusio_solidus.model.yml new file mode 100644 index 00000000000..a96d86c7b5c --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/solidusio_solidus.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["solidusio/solidus", "*", "inputs.last_minor", "code-injection", "generated"] + - ["solidusio/solidus", "*", "inputs.labels", "code-injection", "generated"] + - ["solidusio/solidus", "*", "inputs.base", "code-injection", "generated"] + - ["solidusio/solidus", "*", "inputs.message", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/solo-io_gloo.model.yml b/ql/lib/ext/generated/composite-actions/solo-io_gloo.model.yml new file mode 100644 index 00000000000..ff1b101be4a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/solo-io_gloo.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["solo-io/gloo", "*", "inputs.base-ref", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/sonarr_sonarr.model.yml b/ql/lib/ext/generated/composite-actions/sonarr_sonarr.model.yml new file mode 100644 index 00000000000..fb7bdd0950e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/sonarr_sonarr.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["sonarr/sonarr", "*", "inputs.filter", "code-injection", "generated"] + - ["sonarr/sonarr", "*", "inputs.binary_path", "code-injection", "generated"] + - ["sonarr/sonarr", "*", "inputs.artifact", "code-injection", "generated"] + - ["sonarr/sonarr", "*", "inputs.version", "code-injection", "generated"] + - ["sonarr/sonarr", "*", "inputs.major_version", "code-injection", "generated"] + - ["sonarr/sonarr", "*", "inputs.branch", "code-injection", "generated"] + - ["sonarr/sonarr", "*", "inputs.framework", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/sonic-pi-net_sonic-pi.model.yml b/ql/lib/ext/generated/composite-actions/sonic-pi-net_sonic-pi.model.yml new file mode 100644 index 00000000000..9b263d03357 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/sonic-pi-net_sonic-pi.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["sonic-pi-net/sonic-pi", "*", "inputs.command", "code-injection", "generated"] + - ["sonic-pi-net/sonic-pi", "*", "inputs.container-version", "code-injection", "generated"] + - ["sonic-pi-net/sonic-pi", "*", "inputs.container", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/spacedriveapp_spacedrive.model.yml b/ql/lib/ext/generated/composite-actions/spacedriveapp_spacedrive.model.yml new file mode 100644 index 00000000000..5e6e66c4be4 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/spacedriveapp_spacedrive.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["spacedriveapp/spacedrive", "*", "inputs.setup-arg", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/spockframework_spock.model.yml b/ql/lib/ext/generated/composite-actions/spockframework_spock.model.yml new file mode 100644 index 00000000000..cf545a95592 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/spockframework_spock.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["spockframework/spock", "*", "inputs.additional-java-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/spring-io_initializr.model.yml b/ql/lib/ext/generated/composite-actions/spring-io_initializr.model.yml new file mode 100644 index 00000000000..0484e903515 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/spring-io_initializr.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["spring-io/initializr", "*", "inputs.run-name", "code-injection", "generated"] + - ["spring-io/initializr", "*", "inputs.webhook-url", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/spring-io_start.spring.io.model.yml b/ql/lib/ext/generated/composite-actions/spring-io_start.spring.io.model.yml new file mode 100644 index 00000000000..756a1a0371a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/spring-io_start.spring.io.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["spring-io/start.spring.io", "*", "inputs.run-name", "code-injection", "generated"] + - ["spring-io/start.spring.io", "*", "inputs.webhook-url", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/spring-projects_spring-boot.model.yml b/ql/lib/ext/generated/composite-actions/spring-projects_spring-boot.model.yml new file mode 100644 index 00000000000..ed954bf6f97 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/spring-projects_spring-boot.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["spring-projects/spring-boot", "*", "inputs.run-name", "code-injection", "generated"] + - ["spring-projects/spring-boot", "*", "inputs.webhook-url", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/spring-projects_spring-framework.model.yml b/ql/lib/ext/generated/composite-actions/spring-projects_spring-framework.model.yml new file mode 100644 index 00000000000..47aebb45825 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/spring-projects_spring-framework.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["spring-projects/spring-framework", "*", "inputs.run-name", "code-injection", "generated"] + - ["spring-projects/spring-framework", "*", "inputs.webhook-url", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/spring-projects_spring-graphql.model.yml b/ql/lib/ext/generated/composite-actions/spring-projects_spring-graphql.model.yml new file mode 100644 index 00000000000..28935d7a98b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/spring-projects_spring-graphql.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["spring-projects/spring-graphql", "*", "inputs.run-name", "code-injection", "generated"] + - ["spring-projects/spring-graphql", "*", "inputs.webhook-url", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/square_workflow-kotlin.model.yml b/ql/lib/ext/generated/composite-actions/square_workflow-kotlin.model.yml new file mode 100644 index 00000000000..2ba9ff355e2 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/square_workflow-kotlin.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["square/workflow-kotlin", "*", "inputs.commit-message", "code-injection", "generated"] + - ["square/workflow-kotlin", "*", "inputs.fix-task", "code-injection", "generated"] + - ["square/workflow-kotlin", "*", "inputs.personal-access-token", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/stefanprodan_podinfo.model.yml b/ql/lib/ext/generated/composite-actions/stefanprodan_podinfo.model.yml new file mode 100644 index 00000000000..530cc68ca4b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/stefanprodan_podinfo.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["stefanprodan/podinfo", "*", "inputs.version", "code-injection", "generated"] + - ["stefanprodan/podinfo", "*", "inputs.arch", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/stellar_go.model.yml b/ql/lib/ext/generated/composite-actions/stellar_go.model.yml new file mode 100644 index 00000000000..e75197656f5 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/stellar_go.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["stellar/go", "*", "inputs.go-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/streetsidesoftware_cspell.model.yml b/ql/lib/ext/generated/composite-actions/streetsidesoftware_cspell.model.yml new file mode 100644 index 00000000000..b56944cd0ff --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/streetsidesoftware_cspell.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["streetsidesoftware/cspell", "*", "inputs.name", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/subquery_subql.model.yml b/ql/lib/ext/generated/composite-actions/subquery_subql.model.yml new file mode 100644 index 00000000000..e6d2a79b847 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/subquery_subql.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["subquery/subql", "*", "inputs.package-path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/swagger-api_swagger-codegen.model.yml b/ql/lib/ext/generated/composite-actions/swagger-api_swagger-codegen.model.yml new file mode 100644 index 00000000000..ffd74df05e2 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/swagger-api_swagger-codegen.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["swagger-api/swagger-codegen", "*", "inputs.options", "code-injection", "generated"] + - ["swagger-api/swagger-codegen", "*", "inputs.spec-url", "code-injection", "generated"] + - ["swagger-api/swagger-codegen", "*", "inputs.language", "code-injection", "generated"] + - ["swagger-api/swagger-codegen", "*", "inputs.job-name", "code-injection", "generated"] + - ["swagger-api/swagger-codegen", "*", "inputs.build-commands", "code-injection", "generated"] + - ["swagger-api/swagger-codegen", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/swagger-api_swagger-parser.model.yml b/ql/lib/ext/generated/composite-actions/swagger-api_swagger-parser.model.yml new file mode 100644 index 00000000000..f476d7160f6 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/swagger-api_swagger-parser.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["swagger-api/swagger-parser", "*", "inputs.logsPath", "code-injection", "generated"] + - ["swagger-api/swagger-parser", "*", "inputs.parserSpecPath", "code-injection", "generated"] + - ["swagger-api/swagger-parser", "*", "inputs.serializationType", "code-injection", "generated"] + - ["swagger-api/swagger-parser", "*", "inputs.options", "code-injection", "generated"] + - ["swagger-api/swagger-parser", "*", "inputs.inputSpec", "code-injection", "generated"] + - ["swagger-api/swagger-parser", "*", "inputs.parserVersion", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/tarantool_tarantool.model.yml b/ql/lib/ext/generated/composite-actions/tarantool_tarantool.model.yml new file mode 100644 index 00000000000..e95dacb65a9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/tarantool_tarantool.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["tarantool/tarantool", "*", "inputs.source", "code-injection", "generated"] + - ["tarantool/tarantool", "*", "inputs.chat-id", "code-injection", "generated"] + - ["tarantool/tarantool", "*", "inputs.revision", "code-injection", "generated"] + - ["tarantool/tarantool", "*", "inputs.submodule", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/telepresenceio_telepresence.model.yml b/ql/lib/ext/generated/composite-actions/telepresenceio_telepresence.model.yml new file mode 100644 index 00000000000..42a9859aa23 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/telepresenceio_telepresence.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["telepresenceio/telepresence", "*", "inputs.release_version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/tensorflow_datasets.model.yml b/ql/lib/ext/generated/composite-actions/tensorflow_datasets.model.yml new file mode 100644 index 00000000000..029e4f95a2a --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/tensorflow_datasets.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["tensorflow/datasets", "*", "inputs.extras", "code-injection", "generated"] + - ["tensorflow/datasets", "*", "inputs.tf-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/texstudio-org_texstudio.model.yml b/ql/lib/ext/generated/composite-actions/texstudio-org_texstudio.model.yml new file mode 100644 index 00000000000..3223e185c7b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/texstudio-org_texstudio.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["texstudio-org/texstudio", "*", "inputs.file", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/toeverything_affine.model.yml b/ql/lib/ext/generated/composite-actions/toeverything_affine.model.yml new file mode 100644 index 00000000000..26fa1ce22b7 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/toeverything_affine.model.yml @@ -0,0 +1,13 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["toeverything/affine", "*", "inputs.extra-flags", "code-injection", "generated"] + - ["toeverything/affine", "*", "inputs.nmHoistingLimits", "code-injection", "generated"] + - ["toeverything/affine", "*", "inputs.path", "code-injection", "generated"] + - ["toeverything/affine", "*", "inputs.cluster-location", "code-injection", "generated"] + - ["toeverything/affine", "*", "inputs.cluster-name", "code-injection", "generated"] + - ["toeverything/affine", "*", "inputs.gcp-project-id", "code-injection", "generated"] + - ["toeverything/affine", "*", "inputs.package", "code-injection", "generated"] + - ["toeverything/affine", "*", "inputs.target", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/treeverse_lakefs.model.yml b/ql/lib/ext/generated/composite-actions/treeverse_lakefs.model.yml new file mode 100644 index 00000000000..a68a3372089 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/treeverse_lakefs.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["treeverse/lakefs", "*", "inputs.compose-flags", "code-injection", "generated"] + - ["treeverse/lakefs", "*", "inputs.compose-directory", "code-injection", "generated"] + - ["treeverse/lakefs", "*", "inputs.compose-file", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/trezor_trezor-firmware.model.yml b/ql/lib/ext/generated/composite-actions/trezor_trezor-firmware.model.yml new file mode 100644 index 00000000000..6c874d64655 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/trezor_trezor-firmware.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["trezor/trezor-firmware", "*", "inputs.lang", "code-injection", "generated"] + - ["trezor/trezor-firmware", "*", "inputs.model", "code-injection", "generated"] + - ["trezor/trezor-firmware", "*", "inputs.status", "code-injection", "generated"] + - ["trezor/trezor-firmware", "*", "inputs.full-deps", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/tribler_tribler.model.yml b/ql/lib/ext/generated/composite-actions/tribler_tribler.model.yml new file mode 100644 index 00000000000..8d339364cf3 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/tribler_tribler.model.yml @@ -0,0 +1,10 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["tribler/tribler", "*", "inputs.libsodium-version", "code-injection", "generated"] + - ["tribler/tribler", "*", "inputs.command", "code-injection", "generated"] + - ["tribler/tribler", "*", "inputs.duration", "code-injection", "generated"] + - ["tribler/tribler", "*", "inputs.requirements", "code-injection", "generated"] + - ["tribler/tribler", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/trunk-io_trunk-action.model.yml b/ql/lib/ext/generated/composite-actions/trunk-io_trunk-action.model.yml new file mode 100644 index 00000000000..db6751f8ef5 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/trunk-io_trunk-action.model.yml @@ -0,0 +1,13 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["trunk-io/trunk-action", "*", "inputs.tools", "code-injection", "generated"] + - ["trunk-io/trunk-action", "*", "inputs.post-init", "code-injection", "generated"] + - ["trunk-io/trunk-action", "*", "inputs.setup-deps", "code-injection", "generated"] + - ["trunk-io/trunk-action", "*", "inputs.label", "code-injection", "generated"] + - ["trunk-io/trunk-action", "*", "inputs.debug", "code-injection", "generated"] + - ["trunk-io/trunk-action", "*", "inputs.check-run-id", "code-injection", "generated"] + - ["trunk-io/trunk-action", "*", "inputs.check-all-mode", "code-injection", "generated"] + - ["trunk-io/trunk-action", "*", "inputs.cache-key", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/unidata_metpy.model.yml b/ql/lib/ext/generated/composite-actions/unidata_metpy.model.yml new file mode 100644 index 00000000000..68959bf2102 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/unidata_metpy.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["unidata/metpy", "*", "inputs.key", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/unstructured-io_unstructured.model.yml b/ql/lib/ext/generated/composite-actions/unstructured-io_unstructured.model.yml new file mode 100644 index 00000000000..f8aa8480088 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/unstructured-io_unstructured.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["unstructured-io/unstructured", "*", "inputs.python-version", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/vercel_turbo.model.yml b/ql/lib/ext/generated/composite-actions/vercel_turbo.model.yml new file mode 100644 index 00000000000..0f78fddcd96 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/vercel_turbo.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["vercel/turbo", "*", "inputs.extra-flags", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/vesoft-inc_nebula.model.yml b/ql/lib/ext/generated/composite-actions/vesoft-inc_nebula.model.yml new file mode 100644 index 00000000000..9eb860b13d9 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/vesoft-inc_nebula.model.yml @@ -0,0 +1,12 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["vesoft-inc/nebula", "*", "inputs.target-path", "code-injection", "generated"] + - ["vesoft-inc/nebula", "*", "inputs.bucket", "code-injection", "generated"] + - ["vesoft-inc/nebula", "*", "inputs.key-secret", "code-injection", "generated"] + - ["vesoft-inc/nebula", "*", "inputs.key-id", "code-injection", "generated"] + - ["vesoft-inc/nebula", "*", "inputs.endpoint", "code-injection", "generated"] + - ["vesoft-inc/nebula", "*", "inputs.asset-path", "code-injection", "generated"] + - ["vesoft-inc/nebula", "*", "inputs.tag", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/vkcom_vkui.model.yml b/ql/lib/ext/generated/composite-actions/vkcom_vkui.model.yml new file mode 100644 index 00000000000..573b256121f --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/vkcom_vkui.model.yml @@ -0,0 +1,11 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["vkcom/vkui", "*", "inputs.next_version", "code-injection", "generated"] + - ["vkcom/vkui", "*", "inputs.package_name", "code-injection", "generated"] + - ["vkcom/vkui", "*", "inputs.npm_tag", "code-injection", "generated"] + - ["vkcom/vkui", "*", "inputs.prev_version", "code-injection", "generated"] + - ["vkcom/vkui", "*", "inputs.new_version", "code-injection", "generated"] + - ["vkcom/vkui", "*", "inputs.pre_id", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/vuetifyjs_vuetify.model.yml b/ql/lib/ext/generated/composite-actions/vuetifyjs_vuetify.model.yml new file mode 100644 index 00000000000..c5278340c0b --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/vuetifyjs_vuetify.model.yml @@ -0,0 +1,9 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["vuetifyjs/vuetify", "*", "inputs.name", "code-injection", "generated"] + - ["vuetifyjs/vuetify", "*", "inputs.path", "code-injection", "generated"] + - ["vuetifyjs/vuetify", "*", "inputs.npm-tag", "code-injection", "generated"] + - ["vuetifyjs/vuetify", "*", "inputs.release-id", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/wagoodman_dive.model.yml b/ql/lib/ext/generated/composite-actions/wagoodman_dive.model.yml new file mode 100644 index 00000000000..b11973cfa00 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/wagoodman_dive.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["wagoodman/dive", "*", "inputs.bootstrap-apt-packages", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/walletconnect_walletconnectswiftv2.model.yml b/ql/lib/ext/generated/composite-actions/walletconnect_walletconnectswiftv2.model.yml new file mode 100644 index 00000000000..1fd3ca1f005 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/walletconnect_walletconnectswiftv2.model.yml @@ -0,0 +1,13 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["walletconnect/walletconnectswiftv2", "*", "inputs.js-client-api-host", "code-injection", "generated"] + - ["walletconnect/walletconnectswiftv2", "*", "inputs.project-id", "code-injection", "generated"] + - ["walletconnect/walletconnectswiftv2", "*", "inputs.relay-endpoint", "code-injection", "generated"] + - ["walletconnect/walletconnectswiftv2", "*", "inputs.gm-dapp-host", "code-injection", "generated"] + - ["walletconnect/walletconnectswiftv2", "*", "inputs.gm-dapp-project-secret", "code-injection", "generated"] + - ["walletconnect/walletconnectswiftv2", "*", "inputs.gm-dapp-project-id", "code-injection", "generated"] + - ["walletconnect/walletconnectswiftv2", "*", "inputs.explorer-endpoint", "code-injection", "generated"] + - ["walletconnect/walletconnectswiftv2", "*", "inputs.notify-endpoint", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/wazuh_wazuh.model.yml b/ql/lib/ext/generated/composite-actions/wazuh_wazuh.model.yml new file mode 100644 index 00000000000..727a21ac960 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/wazuh_wazuh.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["wazuh/wazuh", "*", "inputs.target", "code-injection", "generated"] + - ["wazuh/wazuh", "*", "inputs.doxygen_config", "code-injection", "generated"] + - ["wazuh/wazuh", "*", "inputs.path", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/web-infra-dev_rspack.model.yml b/ql/lib/ext/generated/composite-actions/web-infra-dev_rspack.model.yml new file mode 100644 index 00000000000..fff6557dd41 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/web-infra-dev_rspack.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["web-infra-dev/rspack", "*", "inputs.post", "code-injection", "generated"] + - ["web-infra-dev/rspack", "*", "inputs.profile", "code-injection", "generated"] + - ["web-infra-dev/rspack", "*", "inputs.target", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/webassembly_wabt.model.yml b/ql/lib/ext/generated/composite-actions/webassembly_wabt.model.yml new file mode 100644 index 00000000000..e87c7cf5c06 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/webassembly_wabt.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["webassembly/wabt", "*", "inputs.os", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/wntrblm_nox.model.yml b/ql/lib/ext/generated/composite-actions/wntrblm_nox.model.yml new file mode 100644 index 00000000000..9c556053d66 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/wntrblm_nox.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["wntrblm/nox", "*", "inputs.python-versions", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/xrplf_rippled.model.yml b/ql/lib/ext/generated/composite-actions/xrplf_rippled.model.yml new file mode 100644 index 00000000000..6121c00ccfd --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/xrplf_rippled.model.yml @@ -0,0 +1,8 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["xrplf/rippled", "*", "inputs.configuration", "code-injection", "generated"] + - ["xrplf/rippled", "*", "inputs.cmake-target", "code-injection", "generated"] + - ["xrplf/rippled", "*", "inputs.cmake-args", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/zcash_zcash.model.yml b/ql/lib/ext/generated/composite-actions/zcash_zcash.model.yml new file mode 100644 index 00000000000..789bdb53aed --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/zcash_zcash.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["zcash/zcash", "*", "inputs.destination", "code-injection", "generated"] + - ["zcash/zcash", "*", "inputs.remove-first-if-exists", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/zenml-io_zenml.model.yml b/ql/lib/ext/generated/composite-actions/zenml-io_zenml.model.yml new file mode 100644 index 00000000000..58389ad753e --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/zenml-io_zenml.model.yml @@ -0,0 +1,6 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["zenml-io/zenml", "*", "inputs.install_integrations", "code-injection", "generated"] \ No newline at end of file diff --git a/ql/lib/ext/generated/composite-actions/zeroc-ice_ice.model.yml b/ql/lib/ext/generated/composite-actions/zeroc-ice_ice.model.yml new file mode 100644 index 00000000000..853948c5ec3 --- /dev/null +++ b/ql/lib/ext/generated/composite-actions/zeroc-ice_ice.model.yml @@ -0,0 +1,7 @@ +extensions: + - addsTo: + pack: githubsecuritylab/actions-all + extensible: sinkModel + data: + - ["zeroc-ice/ice", "*", "inputs.flags", "code-injection", "generated"] + - ["zeroc-ice/ice", "*", "inputs.make_flags", "code-injection", "generated"] \ No newline at end of file