scorecard icon indicating copy to clipboard operation
scorecard copied to clipboard

Feature: Is there a way to check score based on risk levels

Open vijaybestha-fission opened this issue 3 years ago • 4 comments

Is your feature request related to a problem? Please describe. A clear and concise description of what the problem is. Ex. I'm always frustrated when [...]

Describe the solution you'd like A clear and concise description of what you want to happen.

Describe alternatives you've considered A clear and concise description of any alternative solutions or features you've considered.

Additional context Add any other context or screenshots about the feature request here.

vijaybestha-fission avatar Mar 03 '22 11:03 vijaybestha-fission

Is there a way to get score based on risk levels. (HIGH, MEDIUM, and LOW)

ex: scorecard --repo=https://github.com/name/reponame --checks Branch-Protection --show-details for HIGH risk only

vijaybestha-fission avatar Mar 03 '22 11:03 vijaybestha-fission

Thanks for the issue, and sorry for the late reply!

Unfortunately today there is no way to filter results by score. But this sounds like a useful feature to have!

Our current implementation assigns checks a risk, and we don't distinguish between scores. However, we have this on our roadmap for this year. Probably Q4, though.

There's a similar issue https://github.com/ossf/scorecard/issues/1321

We'll post updates as we get closer to getting this feature landed.

Thanks!

laurentsimon avatar Mar 16 '22 19:03 laurentsimon

This issue is stale because it has been open for 60 days with no activity.

github-actions[bot] avatar Nov 02 '23 01:11 github-actions[bot]

This issue has been marked stale because it has been open for 60 days with no activity.

github-actions[bot] avatar Mar 03 '24 01:03 github-actions[bot]