Re: [Codenarc-user] Anyone using Fortify?
Brought to you by:
chrismair
From: Hamlet D. <ham...@ca...> - 2011-03-02 12:05:38
|
I also found this interesting set of static analysis rules: https://www.securecoding.cert.org/confluence/display/java/The+CERT+Oracle+Secure+Coding+Standard+for+Java Fortify rules are here: https://www.fortify.com/vulncat/en/vulncat/index.html I predict that CodeNarc gets a "security" ruleset in a future release :) ----- Original Message ----- > Hi everyone, > > Is anyone using Fortify, HPs static analysis tool? > > It doesn't cover Groovy, but it seems like CodeNarc could expand our > ruleset based on their information. > > Just wondering... > > -- > Hamlet D'Arcy > ham...@ca... > > |