top | item 39897188

Securing CodeQL queries using Semgrep

11 points| brandonspark | 1 year ago |semgrep.dev

2 comments

order

ajbt200128|1 year ago

Can CodeQL queries be insecure? This makes sense as a linter, but not sure about the security value proposition.

Edit: missed what day it is

werrett|1 year ago

I mean, it's arguably a security concern if you're not catching the mistakes you intended to catch.