Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Github: Add Semgrep Check On Pull Request #3688

Merged
merged 5 commits into from
May 2, 2024

Conversation

steelhead31
Copy link
Contributor

Add a Github Action to run a Semgrep scan using the trail of bits ruleset ( identical to those used in the security audit) against the files changes as part of a PR.

Details About Semgrep: https://github.com/semgrep/semgrep/blob/develop/README.md
Details About ToB Scanning Rules : https://github.com/trailofbits/semgrep-rules/blob/main/README.md

@steelhead31 steelhead31 marked this pull request as ready for review May 2, 2024 13:05
@steelhead31 steelhead31 merged commit 6aa6c94 into adoptium:master May 2, 2024
7 of 8 checks passed
@steelhead31 steelhead31 deleted the add_semgrep_gha branch May 2, 2024 13:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants