dave on Nostr: Been looking into low effort and high impact options for code scanning on GitHub. The ...
Published at
2025-03-19 11:43:45Event JSON
{
"id": "2985af7e2ed47ea00e2f5fae7fece4bd8344a6888663feb88116d487252a8cc4",
"pubkey": "9a48e66ec6a813050f31911d595d5ad76db512b45b2edec6bee73a9fbbd4aca7",
"created_at": 1742384625,
"kind": 1,
"tags": [],
"content": "Been looking into low effort and high impact options for code scanning on GitHub.\n\nThe two that I’ve found that work well, regardless of language of the repository, are Codacy and DevSkim, both of which can output SARIF.\n\nhttps://github.com/daveio/shared/tree/main/.github/workflows",
"sig": "d7c367fba6f15319a7fbda8111c1b4194ef3e30a4da76a53f06756708db0eed6aff80ddaca0e950e7949bf0902e94a710fa339596c3cfca1d48f9e799479f605"
}