Skip to content

Add Semgrep as static analyser for CI #3961

Open
@JorTurFer

Description

@JorTurFer

Proposal

We are already using go linters and also CodeQL for detecting code smells and potential code vulnerabilities. Semgrep is another interesting tool that can help us with this job as it has some interesting rules that we can extend.

Use-Case

No response

Anything else?

No response

Metadata

Metadata

Assignees

Labels

automationfeatureAll issues for new features that have been committed to

Type

No type

Projects

  • Status

    To Do

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions