Integrating with code scanning
You can integrate third-party code analysis tools with GitHub code scanning by uploading data as SARIF files.
Code scanning is available as part of GitHub Advanced Security, which is free during the beta release. For more information, see "About GitHub Advanced Security."