Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add a SARIF output mode #1033

Open
woodruffw opened this issue Jan 19, 2021 · 1 comment
Open

Add a SARIF output mode #1033

woodruffw opened this issue Jan 19, 2021 · 1 comment
Assignees
Labels
enhancement New feature or request
Milestone

Comments

@woodruffw
Copy link
Member

For #81: GitHub actions uses SARIF to render its security alerts, so we should add a SARIF output mode to Winchecksec.

@woodruffw woodruffw added the enhancement New feature or request label Jan 19, 2021
@woodruffw woodruffw self-assigned this Jan 19, 2021
@woodruffw woodruffw modified the milestones: 3.0, 3.1 Jan 19, 2021
@woodruffw
Copy link
Member Author

Something slightly annoying: GitHub's SARIF support requires physicalLocation, but physicalLocation is nonsense for Winchecksec: we're testing for compiler-introduced mitigations that don't exist anywhere in the source code.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

1 participant