scorecard/checks
laurentsimon 7a91384f8d
Add line numbers for insecure downloads (#1413)
* add lines for docker files

* support for other constructs

* other insecure patterns

* fixes

* fixes

* comments
2022-01-06 00:13:53 +00:00
..
evaluation Add details to message for default location in SARIF (#1414) 2021-12-23 19:06:02 +00:00
fileparser Add line numbers for insecure downloads (#1413) 2022-01-06 00:13:53 +00:00
raw Add details to message for default location in SARIF (#1414) 2021-12-23 19:06:02 +00:00
testdata Add line numbers for insecure downloads (#1413) 2022-01-06 00:13:53 +00:00
all_checks.go 🌱 v3 upgrade changes (#1118) 2021-10-07 18:16:01 -05:00
binary_artifact.go [DRAFT: RAW]: Security policy support (#1372) 2021-12-14 23:51:42 +00:00
branch_protection_test.go [RAW] Branch Protection support (#1396) 2021-12-16 21:42:05 +00:00
branch_protection.go [RAW] Branch Protection support (#1396) 2021-12-16 21:42:05 +00:00
ci_tests.go CI-Tests: look for test-related strings in target urls as well (#1374) 2021-12-08 17:34:28 +00:00
cii_best_practices_test.go Add CIIClient interface (#1262) 2021-11-15 02:46:41 +00:00
cii_best_practices.go Add a OssFuzzRepoClient (#1280) 2021-11-17 03:04:37 +00:00
code_review.go Code-Review: show PRs merged without code review (#1375) 2021-12-07 16:47:29 -08:00
contributors.go 🌱 v3 upgrade changes (#1118) 2021-10-07 18:16:01 -05:00
dangerous_workflow_test.go Add Script Injection to Dangerous-Workflow (#1368) 2021-12-09 13:53:55 -08:00
dangerous_workflow.go Add line numbers for insecure downloads (#1413) 2022-01-06 00:13:53 +00:00
dependency_update_tool.go [RAW]: dependency update tool (#1391) 2021-12-15 17:02:31 +00:00
errors.go [RAW] Branch Protection support (#1396) 2021-12-16 21:42:05 +00:00
fuzzing.go Add a OssFuzzRepoClient (#1280) 2021-11-17 03:04:37 +00:00
license_test.go move dir (#1367) 2021-12-06 17:57:02 +00:00
license.go [DRAFT: RAW]: Security policy support (#1372) 2021-12-14 23:51:42 +00:00
maintained.go Check for issue activity in Maintained (#1251) 2021-11-12 22:16:22 +00:00
packaging_test.go Adding line numbers for rest of Token-Permessions (and by extension, (#1381) 2021-12-14 04:14:35 +00:00
packaging.go info to debug (#1416) 2021-12-23 17:27:40 -06:00
permissions_test.go Add line numbers for insecure downloads (#1413) 2022-01-06 00:13:53 +00:00
permissions.go 🐛 Fix score calculation for multiple files (#1401) 2021-12-16 23:16:02 +00:00
pinned_dependencies_test.go Add line numbers for insecure downloads (#1413) 2022-01-06 00:13:53 +00:00
pinned_dependencies.go Add line numbers for insecure downloads (#1413) 2022-01-06 00:13:53 +00:00
sast.go fix (#1419) 2021-12-24 01:16:10 +00:00
security_policy.go [DRAFT: RAW]: Security policy support (#1372) 2021-12-14 23:51:42 +00:00
shell_download_validate_test.go Add line numbers for insecure downloads (#1413) 2022-01-06 00:13:53 +00:00
shell_download_validate.go Add line numbers for insecure downloads (#1413) 2022-01-06 00:13:53 +00:00
signed_releases.go Signed-Releases: really look for *.sign files (#1298) 2021-11-20 00:55:08 +00:00
vulnerabilities.go 🌱 Refactor vulnerabilities client 2022-01-04 13:55:58 -06:00
write.md Update write.md (#1084) 2021-09-28 20:41:47 +00:00