Similar to other linters, we would like the option exclude a line of code from having a rule applied if we have deemed them to be not problematic in context.
e.g.
So something like...
run: |
# octoscan ignore=unsecure-commands
echo "echo "::set-env name=ENV_NAME::value"
or
# octoscan ignore=unsecure-commands
run: |
echo "##[set-env name=ENV_NAME;]value"
# or
echo "echo "::set-env name=ENV_NAME::value"