aegilops :github::microsoft: · @aegilops
150 followers · 582 posts · Server fosstodon.org

I've wrapped up SpotBugs/FindSecBugs in a bow 🎁 in a GitHub Action, so you can use it in GitHub Code Scanning - free for open source projects, and also available for paid users of GitHub Advanced Security.

SpotBugs and FindSecBugs work with JVM languages - Scala, Java, and Clojure, mainly.

github.com/marketplace/actions

Point it at the results of the build, and go.

#github #sast #scala #jvm #clojure #java #codesecurity #spotbugs #findsecbugs #devsecops #sdlc

Last updated 2 years ago