sig-interoperability icon indicating copy to clipboard operation
sig-interoperability copied to clipboard

Is "secret detection" just an example of a "scan" pipeline step, or is it its own type of step?

Open amfred opened this issue 2 years ago • 1 comments

See the conversation here: https://github.com/cdfoundation/sig-interoperability/pull/81#discussion_r787756022

amfred avatar Apr 22 '22 10:04 amfred

I think this is a specific instance of the more generic static artifact analysis -- no different from code linters, formatters, scanners, etc. Or perhaps I'm misunderstanding your example or missing something?

bendory avatar Aug 25 '22 18:08 bendory