The Static Analysis Results Interchange Format (SARIF) is an industry standard format for the output of static analysis tools. Github supports SARIF format and allows showing code annotations in a pull requests 1.
cbmc-viewer already helps to analyze results produced by CBMC, and it would be nice to implement exporting report to SARIF format.
The Static Analysis Results Interchange Format (SARIF) is an industry standard format for the output of static analysis tools. Github supports SARIF format and allows showing code annotations in a pull requests 1.
cbmc-vieweralready helps to analyze results produced by CBMC, and it would be nice to implement exporting report to SARIF format.Footnotes
https://github.com/sett-and-hive/sarif-to-comment-action?tab=readme-ov-file#example-usage ↩