CrowdStrike / container-image-scan

Code to scan a container with CrowdStrike and return response codes indicating pass/fail status.
MIT License
33 stars 22 forks source link

SARIF Support? #50

Open gaahrdner opened 2 years ago

gaahrdner commented 2 years ago

Can we get the JSON report into SARIF format so that results can viewed under the "Security" tab on GitHub?

https://docs.github.com/en/code-security/code-scanning/integrating-with-code-scanning/uploading-a-sarif-file-to-github

ctoestreich commented 1 year ago

👍 We also would like this. The console reporting is sub optimal and requires a bunch of digging to uncover issues as pipeline scans