Github — Medium
Key points
- Code scanning is distinct from code quality checks
- It uses specific tools like CodeQL for analysis
- Findings are reported as alerts on the Security tab
- It can optionally block pull requests for security reasons
Ready to go further?
Related questions
