OASIS Static Analysis Results Interchange Format (SARIF) TC

  • Home
  • OASIS Static Analysis Results Interchange Format (SARIF) TC

Error message

User warning: The following module is missing from the file system: cascading_grants_services. For information about how to fix this, see the documentation page. in _drupal_trigger_error_with_delayed_logging() (line 1184 of /var/www/html/web/includes/bootstrap.inc).

SARIF TC

OASIS Static Analysis Results Interchange Format (SARIF) TC

SCOPE

SARIF TC members are developing an interoperability standard for detecting software defects and vulnerabilities. The goal is to define a common output format for static analysis tools that will make it feasible for developers and teams to view, understand, interact with, and manage the results produced by all their tools.

SARIF represents a leap forward in the usability of static analysis tools. Many organizations in the safety and security communities use several competing tools on their code. SARIF will allow them to combine and compare the results more easily to gain a sharper picture of the issues in their code that need to be addressed. Engineering teams will be able to easily access a broad range of potential defects and vulnerabilities in compliance with privacy and accessibility standards. SARIF will support the development of products whose code spans languages and operating systems.

For more information, see the SARIF TC Charter.

LINK TO THE LATEST PUBLISHED VERSION
WIKI WATCH

Insert here: activities, gaps, opportunities, and other user driven comments

Back to the search results