Open dshuvar opened 3 years ago
hi @dshuvar - the current implementation uses github/codeql-action/upload-sarif which is a GitHub action to upload sarif results to GitHub security panel as you mentioned.
There might be other actions available out there for your use or you could simply do a curl POST request to an endpoint you want to send to in order to do this. The GitHub sarif report is available inside of the runtime workspace when the GitHub Actions runs.
For example, this part of code for github action send scan result to GH security tab your repo.
How can I send Trivy scan results to another (something other than github security) cloud-native / open-source security product/panel?