OWASP-Benchmark / BenchmarkUtils

OWASP Benchmark Project Utilities - Provides scorecard generation and crawling tools for Benchmark style test suites.
https://owasp.org/www-project-benchmark/
GNU General Public License v3.0
13 stars 48 forks source link

Add Datadog SAST support #63

Closed juli1 closed 2 months ago

juli1 commented 2 months ago

This Pull Request add support for the Datadog Static Analyzer. It relies on the SARIF file produces by the Datadog Static Analyzer to report the OWASP score.

juli1 commented 2 months ago

👋 any update on approving this change? Could we merge it to add this tool? Thank you!

davewichers commented 2 months ago

@darkspirit510 - can you review/test this and let me know what you think?

darkspirit510 commented 2 months ago

@davewichers Looks good to me, although I'm currently working on a refactoring (as mentioned via mail). So this can be merged, but I will change it later ☺️

darkspirit510 commented 2 months ago

@juli1 Could you provide me an actual sarif result file from Datadog (github@darkspirit510.de)? It will not be published/distributed, it's just for verification, especially for my refactoring.

juli1 commented 2 months ago

@juli1 Could you provide me an actual sarif result file from Datadog (github@darkspirit510.de)? It will not be published/distributed, it's just for verification, especially for my refactoring.

Just did, hopefully it does not end up in your spam folder :)