-
Notifications
You must be signed in to change notification settings - Fork 3
All issues
Issue creation is restricted in this repository
Issues
is:issue state:open
is:issue state:open
Search results
fix(release): parent publish dry-run is skipped on every release, not just the first
bugSomething isn't workingSomething isn't workingdocumentationImprovements or additions to documentationImprovements or additions to documentationgithub_actionsPull requests that update GitHub Actions codePull requests that update GitHub Actions codeStatus: Open.#1224 In dekobon/big-code-analysis;deps(py): adopt ruff 0.16 by pinning the rule set with select
dependenciesPull requests that update a dependency filePull requests that update a dependency filepythonPython language support / metricsPython language support / metricsStatus: Open.#1222 In dekobon/big-code-analysis;fix(tree-sitter-mozcpp): bound deserialize and gate the patch against regeneration
securitySecurity-relevant findingSecurity-relevant findingupstream-grammarCannot be fixed locally; needs upstream tree-sitter grammar changeCannot be fixed locally; needs upstream tree-sitter grammar changeStatus: Open.#1202 In dekobon/big-code-analysis;feat(suppression): surface the marker rationale in exemptions and SARIF (3.0)
enhancementNew feature or requestNew feature or requestlow-priorityLow-priority per issue-plan assessmentLow-priority per issue-plan assessmentStatus: Open.#1175 In dekobon/big-code-analysis;perf(cli): stream walked paths into the worker pool instead of materializing them
enhancementNew feature or requestNew feature or requestStatus: Open.#1158 In dekobon/big-code-analysis;test(fuzz): add a targeted cargo-fuzz crate
securitySecurity-relevant findingSecurity-relevant findingStatus: Open.#1154 In dekobon/big-code-analysis;fix(cli): give the CLI resource bounds (fail-closed per-file budget)
securitySecurity-relevant findingSecurity-relevant findingStatus: Open.#1153 In dekobon/big-code-analysis;chore(lints): enable arithmetic and indexing lints on attacker-controlled paths
securitySecurity-relevant findingSecurity-relevant findingStatus: Open.#1152 In dekobon/big-code-analysis;fix(tree-sitter-mozcpp): bound the deserialize memcpy in scanner.c
securitySecurity-relevant findingSecurity-relevant findingupstream-grammarCannot be fixed locally; needs upstream tree-sitter grammar changeCannot be fixed locally; needs upstream tree-sitter grammar changeStatus: Open.#1058 In dekobon/big-code-analysis;docs(py): unsafe soundness doc cites stale tree-sitter pin; make Node/Ast pairing structural
documentationImprovements or additions to documentationImprovements or additions to documentationpythonPython language support / metricsPython language support / metricsStatus: Open.#1057 In dekobon/big-code-analysis;fix(cli/check): @generated marker and committed .gitignore silently bypass the gate
bugSomething isn't workingSomething isn't workingclibca CLI surfacebca CLI surfacedocumentationImprovements or additions to documentationImprovements or additions to documentationsecuritySecurity-relevant findingSecurity-relevant findingStatus: Open.#1055 In dekobon/big-code-analysis;chore(security): harden against adversarial input (lints, fuzzing, CLI resource bounds)
enhancementNew feature or requestNew feature or requestsecuritySecurity-relevant findingSecurity-relevant findingStatus: Open.#1053 In dekobon/big-code-analysis;