To generate a ready to run ruleset for vacuum, use the generate-ruleset command.

There are three options available:

  • recommended - This will generate a ruleset based on the recommended rules.
  • all - This will generate a ruleset based on all available rules.
  • owasp - This will generate a ruleset based on the OWASP rules.
vacuum generate-ruleset recommended

Will print out something like this:

RuleSet generated for 'recommended', written to 'ruleset-recommended.yaml'