Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

SARIF Reports as input for BuildQualityChecks #190

Open
ncook-hxgn opened this issue Jul 29, 2022 · 0 comments
Open

SARIF Reports as input for BuildQualityChecks #190

ncook-hxgn opened this issue Jul 29, 2022 · 0 comments

Comments

@ncook-hxgn
Copy link

ncook-hxgn commented Jul 29, 2022

Describe the context

  • Extension: BuildQualityChecks
  • Environment: Azure DevOps Services (cloud)
  • Agent type: Microsoft-hosted, self-hosted agent, or Container
    • Agent version: latest
  • Pipeline type: yaml pipeline

Describe the problem and expected behavior

I'd like the BuildQualityChecks to optionally look at some specified CodeAnalysisLogs folder for probably *.sarif reports and use the data therein in comparison against the baseline stored on another branch, likely main - like with the code coverage and warnings etc - and fail/warn my build accordingly. Please? 😇

Tell you what, if it was aware of the SAST Scans Tab, that'd be amazing.

Task logs
Run your pipeline with the following variables:
// - For BuildQualityChecks: System.Debug and BQC.LogRawData set to true
// Send the task log to PSGerExtSupport@microsoft.com and reference your GitHub issue.

@ncook-hxgn ncook-hxgn changed the title 💡 SARIF Reports as input for BuildQualityChecks SARIF Reports as input for BuildQualityChecks Dec 14, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant