8000 Donate `scorecard-azure-pipelines-task` · Issue #4519 · ossf/scorecard · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content

Donate scorecard-azure-pipelines-task #4519

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
JamieMagee opened this issue Feb 11, 2025 · 1 comment
Open

Donate scorecard-azure-pipelines-task #4519

JamieMagee opened this issue Feb 11, 2025 · 1 comment
Assignees

Comments

@JamieMagee
Copy link
Contributor

Azure DevOps has an integrated CI/CD system called Azure Pipelines, similar to GitHub Actions. As with GitHub Actions, you can create your own custom Azure Pipelines tasks. I created scorecard-azure-pipelines-task as a custom Azure Pipelines task to enable users to easily run Scorecard against their Azure DevOps repositories, now that #4177 is largely complete. This will enable a similar experience to the existing ossf/scorecard-action on GitHub Actions.

Azure DevOps also has support for uploading SARIF files to create alerts, and I think publishing a Scorecard Azure Pipelines task will allow users to more easily integrate Scorecard feedback into normal development workflow.

This was discussed at the APAC Scorecard project meeting on February 6th, 2025, and the suggestion seemed to be generally supported, provided I agree to continue maintaining the task -- which I do.

What are the next steps?

@justaugustus
Copy link
Member

@JamieMagee — thanks again for your work here! I'm in favor of the donation, presuming we can have your support in continuing to maintain the repository.

FYI @GeauxJD @ossf/scorecard-admins

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
Status: In Progress
Development

No branches or pull requests

3 participants
0