[ 200 OK ][ ANALYZE ][ .SARIF ][ FIX-PR ]

blog

Field notes from shipping a security scanner.

What we measure, what we get wrong, and what we ship to fix it. Every post is reproducible from public code.