mbien commented on PR #6122:
URL: https://github.com/apache/netbeans/pull/6122#issuecomment-1623508285

   > I think it will land to security tab on github,
   
   right, take a look at apache roller as example: 
https://github.com/apache/roller/security/code-scanning
   netbeans will have ~1.7k of those
   
   > I hope this not autocreate PR.
   
   no it won't. Most warnings explain the problem and do often suggest how to 
fix it. The problem has to be still understood, triaged and fixed by someone.
   
   New PRs are also scanned to avoid the introduction of new issues - which is 
a great feature. However I noticed in other projects that when old code is 
refactored it sometimes thinks that the PR is adding a new issue.
   
   I am slightly in favor for enabling the scans, but only if we have more devs 
beside me who agree to periodically look at those warnings and help to reduce 
them - otherwise they serve no purpose.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

For further information about the NetBeans mailing lists, visit:
https://cwiki.apache.org/confluence/display/NETBEANS/Mailing+lists

Reply via email to