Vetrox / squirrelbot

Ein discord Bot für die Fachschaft des FB 12
MIT License
2 stars 1 forks source link

[GitHub Action] running CodeQL analysis #63

Closed roscha444 closed 3 years ago

roscha444 commented 3 years ago

Sounds good to me, looks for e.g. hard-coded access data for vulnerabilities, ...

This action runs GitHub's industry-leading static analysis engine, CodeQL, against a repository's source code to find security vulnerabilities. It then automatically uploads the results to GitHub so they can be displayed in the repository's security tab.

https://github.com/github/codeql-action

roscha444 commented 3 years ago

finished