davisjam / vuln-regex-detector

Detect vulnerable regexes in your project. REDOS, catastrophic backtracking.
MIT License
318 stars 27 forks source link

parallelism #5

Open davisjam opened 6 years ago

davisjam commented 6 years ago

If scanning many projects, I suggest using a single thread/process per project instead. Easier to reason about.

But if scanning a single project, each analysis phase can be performed across multiple threads.

davisjam commented 6 years ago

validate-uploads.js could also use some parallelism.