Gotham-Village / welcome-clerk

A blank DDD Aggregate
MIT License
0 stars 0 forks source link

Feature request - bootstrap security code scanning #7

Closed rdd13r closed 2 years ago

rdd13r commented 2 years ago

Code Scanning

I want security code scanning so that my resulting component project has

  • a security scanning start offered
  • a sensible default scan coverage
  • a placeholder of good practice

Scanning Spec Draft

Given that I plan to use several programming languages and technologies, namely:

When I commit a composite code change on:

Then all of the codebase in scope is scanned for

And some basic scanning information links are included

Alternatives considered

GitLab offers a significant advantage both in maturity of solutions and availability of workups from our customers. It is rejected for the time being due to historic considerations. Plan to 'scoot over', as described by management (asei-boss) exists.

Additional context

Existing tools in use

Potential Hopefuls

rdd13r commented 2 years ago

Here is the final consideration behind the devops for the fixture: