fix(security): harden native scan contracts

This commit is contained in:
Kyle McCleary
2026-07-29 18:47:51 -07:00
parent 089a9963f8
commit b708b39915
31 changed files with 677 additions and 431 deletions
@@ -6,8 +6,12 @@ async function readBundle(directory: string) {
const root = path.resolve(directory);
const scan = JSON.parse(await Bun.file(path.join(root, "scan.json")).text()) as unknown;
const findings = JSON.parse(await Bun.file(path.join(root, "findings.json")).text()) as unknown;
const report = await Bun.file(path.join(root, "report.md")).text().catch(() => undefined);
const sarifText = await Bun.file(path.join(root, "results.sarif")).text().catch(() => undefined);
const report = await Bun.file(path.join(root, "report.md"))
.text()
.catch(() => undefined);
const sarifText = await Bun.file(path.join(root, "results.sarif"))
.text()
.catch(() => undefined);
return parseSecurityScanBundle({
scan,
findings,