Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CodeQL alternative for local/private security scanning #55

Open
viperior opened this issue Jun 26, 2022 Discussed in #42 · 1 comment
Open

CodeQL alternative for local/private security scanning #55

viperior opened this issue Jun 26, 2022 Discussed in #42 · 1 comment
Assignees
Labels
enhancement New feature or request good first issue Good for newcomers help wanted Extra attention is needed

Comments

@viperior
Copy link
Owner

Discussed in #42

Originally posted by viperior May 6, 2022
CodeQL analysis is not available to non-public, non-enterprise GitHub accounts as of May 2022. Explore the use of the bandit Python module in a GitHub Actions workflow to provide a layer of Python code security scanning that will work for a broader user base than CodeQL currently supports for free.

https://bandit.readthedocs.io/en/latest/

@viperior viperior added enhancement New feature or request help wanted Extra attention is needed good first issue Good for newcomers labels Jun 26, 2022
@viperior viperior self-assigned this Jun 26, 2022
@viperior
Copy link
Owner Author

Also check out https://github.com/pyupio/safety

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request good first issue Good for newcomers help wanted Extra attention is needed
Projects
None yet
Development

No branches or pull requests

1 participant