core icon indicating copy to clipboard operation
core copied to clipboard

Use SARIF schema when reporting flaws to GitHub

Open fridex opened this issue 3 years ago • 9 comments

Is your feature request related to a problem? Please describe.

See https://docs.github.com/en/code-security/code-scanning/integrating-with-code-scanning/sarif-support-for-code-scanning

fridex avatar Dec 20 '21 10:12 fridex

which component would report these flaws? how is the discovery of flaws triggered?

goern avatar Jan 10 '22 09:01 goern

/triage needs-information

codificat avatar Jan 31 '22 19:01 codificat

/sig user-experience

goern avatar Apr 04 '22 09:04 goern

Issues go stale after 90d of inactivity. Mark the issue as fresh with /remove-lifecycle stale. Stale issues rot after an additional 30d of inactivity and eventually close.

If this issue is safe to close now please do so with /close.

/lifecycle stale

sesheta avatar Jul 03 '22 10:07 sesheta

Stale issues rot after 30d of inactivity. Mark the issue as fresh with /remove-lifecycle rotten. Rotten issues close after an additional 30d of inactivity.

If this issue is safe to close now please do so with /close.

/lifecycle rotten

sesheta avatar Aug 02 '22 12:08 sesheta

Rotten issues close after 30d of inactivity. Reopen the issue with /reopen. Mark the issue as fresh with /remove-lifecycle rotten.

/close

sesheta avatar Sep 01 '22 15:09 sesheta

@sesheta: Closing this issue.

In response to this:

Rotten issues close after 30d of inactivity. Reopen the issue with /reopen. Mark the issue as fresh with /remove-lifecycle rotten.

/close

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.

sesheta avatar Sep 01 '22 15:09 sesheta

@fridex: This issue is currently awaiting triage. If a refinement session determines this is a relevant issue, it will accept the issue by applying the triage/accepted label and provide further guidance.

The triage/accepted label can be added by org members by writing /triage accepted in a comment.

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.

sesheta avatar Sep 04 '22 13:09 sesheta

/remove-lifecycle rotten /lifecycle frozen

harshad16 avatar Oct 04 '22 03:10 harshad16