ossf / scorecard

OpenSSF Scorecard - Security health metrics for Open Source
https://scorecard.dev
Apache License 2.0
4.46k stars 489 forks source link

:book: mark codeApproved and sastToolRunsOnAllCommits as experimental #4242

Closed spencerschrock closed 2 months ago

spencerschrock commented 2 months ago

What kind of change does this PR introduce?

doc change

What is the current behavior?

What is the new behavior (if this is a feature change)?**

The motivation behind the probes won't change, but I want to reserve the ability to change the probe to return 1 finding per changeset. We've received feedback that being able to see which individual change passes or doesn't pass is helpful (https://github.com/ossf/scorecard/issues/4237#issuecomment-2227104276).

Which issue(s) this PR fixes

NONE

Special notes for your reviewer

Does this PR introduce a user-facing change?

For user-facing changes, please add a concise, human-readable release note to the release-note

(In particular, describe what changes users might need to make in their application as a result of this pull request.)

NONE