IBM / detect-secrets

An enterprise friendly way of detecting and preventing secrets in code.
Apache License 2.0
74 stars 46 forks source link

Create codeql-analysis.yml #92

Closed victoria-miltcheva closed 2 years ago

victoria-miltcheva commented 2 years ago

I was looking into alternatives for https://pyup.io/safety/. Although this isn't a dependency vulnerability replacement, it would be nice to have code scanning.

Note: this isn't meant to replace safety, it's a nice-to-have.

victoria-miltcheva commented 2 years ago

The Travis CI checks are failing for the same reason that the master build is failing - invalid safety API key.