You can write custom CodeQL queries to find specific issues relevant to your own project. This is optional, and the github/codeql repository contains a large number of example queries you can use instead.
Creating a custom query
You create a new query file from a template for a given language, which imports the standard libraries for analyzing that language.
-
In the extension sidebar, open the "Queries" view, then click the Create query icon.
-
In the VS Code Command Palette, select the target language for your query. If you've chosen not to create your custom query in an existing directory, selecting a language will autogenerate a directory labeled
codeql-custom-queries-LANGUAGE, whereLANGUAGEis the name of the selected language. A query template labeledexample.qlwill then be added to the existing or autogenerated directory. -
In the template, write your custom query, then save the file. Once your query is finished, you can run it from the "Queries" view.
Further reading
You can read about how to write queries for supported languages in the CodeQL documentation: