kodadot / nft-gallery

Generative Art Marketplace
https://koda.art
MIT License
627 stars 359 forks source link

Add code static analysis tools & workflows and bots to raise code quality in KodaDot #1858

Open yangwao opened 2 years ago

yangwao commented 2 years ago

There is not enough static analysis in the room, who we should invite for a drink at bar?

Any suspect from this list seems conscious? https://github.com/kodadot/nft-gallery/security/code-scanning image image

yangwao commented 2 years ago

IMO, we can add Renovate to chek dependencies update by @roiLeo

yangwao commented 1 year ago

Received suggestion we should look on this and add some AI helpers to speed up our stuff!

yangwao commented 1 year ago

semgrep by xen0l https://semgrep.dev/

+2