ruleId hierarchical string is incompatible with Semmle rule ids #365
Labels
2.1.0-CSD.1
Will be fixed in SARIF v2.1.0 CSD.1.
design-improvement
impact-non-breaking-change
merged
Changes merged into provisional draft.
resolved-fixed
The
ruleId
(3.25.5) property ofresult
says:The "first component" part is incompatible with Semmle ids, which are of the form e.g.
cpp/path-injection
. By treating the first component as the identifier of the rule, we would consider the rule id to be "cpp", which is incorrect.Perhaps we can change the description to specify that the
ruleId
should be a hierarchical prefix of theid
of the associated reporting descriptor?This also relates to #364.
Apologies, I tried to bring this up in the TC where we discussed this, but I don't think I was very clear on my concerns.
The text was updated successfully, but these errors were encountered: