scorecard/checks/testdata
AdamKorcz 47e04c102a
🌱 Convert SAST check to probes (#3571)
* Convert SAST checks to probes

Signed-off-by: AdamKorcz <adam@adalogics.com>

* Update checks/evaluation/sast.go

Co-authored-by: Raghav Kaul <8695110+raghavkaul@users.noreply.github.com>
Signed-off-by: AdamKorcz <44787359+AdamKorcz@users.noreply.github.com>

* preserve file info when logging positive Sonar findings

Signed-off-by: AdamKorcz <adam@adalogics.com>

* rebase

Signed-off-by: AdamKorcz <adam@adalogics.com>

* Remove warning logging

Signed-off-by: AdamKorcz <adam@adalogics.com>

* add outcome and message to finding on the same line

Signed-off-by: AdamKorcz <adam@adalogics.com>

* codeql workflow -> codeql action

Signed-off-by: AdamKorcz <adam@adalogics.com>

* 'the Sonar' -> 'Sonar' in probe def.yml

Signed-off-by: AdamKorcz <adam@adalogics.com>

* fix typo

Signed-off-by: AdamKorcz <adam@adalogics.com>

* Change how probe creates location

Signed-off-by: AdamKorcz <adam@adalogics.com>

* Change names of values

Signed-off-by: AdamKorcz <adam@adalogics.com>

* change 'SAST tool detected: xx' to 'SAST tool installed: xx'

Signed-off-by: AdamKorcz <adam@adalogics.com>

* make text in probe def.yml easier to read

Signed-off-by: AdamKorcz <adam@adalogics.com>

* Change 'to' to 'two'

Signed-off-by: AdamKorcz <adam@adalogics.com>

* Minor change

Signed-off-by: AdamKorcz <adam@adalogics.com>

---------

Signed-off-by: AdamKorcz <adam@adalogics.com>
Signed-off-by: AdamKorcz <44787359+AdamKorcz@users.noreply.github.com>
Co-authored-by: Raghav Kaul <8695110+raghavkaul@users.noreply.github.com>
2023-11-07 08:41:44 -05:00
..
.github/workflows 🌱 Convert SAST check to probes (#3571) 2023-11-07 08:41:44 -05:00
binaryartifacts 🐛 Add wasm files as binary artifacts (#2548) 2023-01-06 13:16:30 -06:00
licensedir move dir (#1367) 2021-12-06 17:57:02 +00:00
securitypolicy Improved Security Policy Check (#2195) 2022-11-04 14:35:44 -07:00
Dockerfile-pinned-without-hash Use new project name in Copyright notices (#2505) 2022-12-01 15:08:48 -08:00
pom-1line.xml feat: Add pom.xml support for sonarype SAST (#2114) 2022-08-03 19:57:59 +00:00
pom-2lines.xml feat: Add pom.xml support for sonarype SAST (#2114) 2022-08-03 19:57:59 +00:00
script-sh Use new project name in Copyright notices (#2505) 2022-12-01 15:08:48 -08:00
script.sh Use new project name in Copyright notices (#2505) 2022-12-01 15:08:48 -08:00