RIP Webby

Programming => Programming Discussion => Topic started by: Admin on January 26, 2022, 12:18:54 am

Title: Automated Dependancy and Code Scanning Tools
Post by: Admin on January 26, 2022, 12:18:54 am
Snyk
https://snyk.io/ (https://snyk.io/)

Open source, free - paid
Integrates into IDEs, GitLab, GitHub, BitBucket, CI/CD and more.

Supported languages:
(https://support.snyk.io/hc/en-us/sections/360001087857)

GuardRails
https://guardrails.io/ (https://guardrails.io/)

Closed source, free - paid

Supported languages: (https://docs.guardrails.io/docs/en/tools)


WhiteSource Renovate
https://www.whitesourcesoftware.com/free-developer-tools/renovate (https://www.whitesourcesoftware.com/free-developer-tools/renovate)

Open source
Officially integrates into GitHub only.

Supported languages:


DependaBot
https://dependabot.com/ (https://dependabot.com/)

Closed source, owned by Github
Only updates dependencies.

Supported languages:

                  
Title: Re: Automated Dependancy and Code Scanning Tools
Post by: Admin on January 26, 2022, 12:19:06 am
SepGrep
https://semgrep.dev (https://semgrep.dev)

Open source
Integrate into GitHub, GitLab, Bitbucket, CircleCI, VSCode + more

Supported languages: (https://semgrep.dev/docs/status/)