Use Static Application Security Testing for All Commits
tip
This check is currently under development and not yet implemented. Click here to learn how you can help.
Use Case
- Incubating: expected
- Active: expected
- Retiring: n/a
Description
All Commits are Scanned by a Static Application Security Testing Tool
Details
- C-SCRM: false
- Priority Group: P6
- Mitre: CWE-1076
- Sources: OWASP SCVS L1 6.6OpenSSF Scorecard
- How To: CodeQL Docs