Skip to content

Integrate Codacy SARIF with GitHub code scanning - #27

Open
Papishushi wants to merge 2 commits into
mainfrom
maintenance/codacy-sarif-integration
Open

Papishushi wants to merge 2 commits into
mainfrom
maintenance/codacy-sarif-integration

Conversation

@Papishushi

Copy link
Copy Markdown
Owner

Summary

  • generate results.sarif from Codacy
  • enable GitHub code scanning compatibility
  • upload Codacy SARIF through github/codeql-action/upload-sarif@v4
  • keep Codacy results isolated under the codacy category alongside CodeQL
  • remove the unnecessary actions: read permission for this public repository
  • align workflow comments with the behavior actually implemented

Rationale

The existing workflow already granted security-events: write and described a SARIF/code-scanning integration, but it neither generated SARIF nor uploaded it. This completes that intended integration while leaving the existing CodeQL workflow untouched.

@codacy-production

Copy link
Copy Markdown

Up to standards ✅

🟢 Issues 0 issues

Results:
0 new issues

View in Codacy

NEW Get contextual insights on your PRs based on Codacy's metrics, along with PR and Jira context, without leaving GitHub. Enable AI reviewer
TIP This summary will be updated as you push new changes.

@Papishushi Papishushi closed this Aug 24, 2026
@Papishushi Papishushi reopened this Aug 24, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant