Why Nostr? What is Njump?
2025-03-19 11:43:45

dave on Nostr: Been looking into low effort and high impact options for code scanning on GitHub. The ...

Been looking into low effort and high impact options for code scanning on GitHub.

The two that I’ve found that work well, regardless of language of the repository, are Codacy and DevSkim, both of which can output SARIF.

https://github.com/daveio/shared/tree/main/.github/workflows
Author Public Key
npub1nfywvmkx4qfs2re3jyw4jh266akm2y45tvhda347uuaflw754jnsjj8fzu