sast-scan icon indicating copy to clipboard operation
sast-scan copied to clipboard

Universal suppressions support

Open prabhu opened this issue 5 years ago • 1 comments

It appears like only certain tools (bandit, gosec) respect the #nosec comment to filter out false positives. Find Security Bugs seems to be using @SuppressFBWarnings annotation. It will be nice to at least document the annotation and comments required to filter the check.

prabhu avatar Jan 17 '20 10:01 prabhu

https://docs.oasis-open.org/sarif/sarif/v2.1.0/cs01/sarif-v2.1.0-cs01.html#_Toc16012617

3.27.23 suppressions property

prabhu avatar Jan 17 '20 11:01 prabhu