Skip to content
This repository has been archived by the owner on Nov 3, 2020. It is now read-only.

Interesting suite of plugins for componet analysis java #38

Open
pethers opened this issue Aug 19, 2019 · 0 comments
Open

Interesting suite of plugins for componet analysis java #38

pethers opened this issue Aug 19, 2019 · 0 comments

Comments

@pethers
Copy link

pethers commented Aug 19, 2019

A range of sonarqube plugins that cover different aspects of https://www.owasp.org/index.php/Component_Analysis

License : https://github.com/porscheinformatik/sonarqube-licensecheck
Known Vulnerabilities : https://github.com/SonarSecurityCommunity/dependency-check-sonar-plugin (already included)
Outdated Components : https://github.com/reallyinsane/mathan-dependency-updates-sonar-plugin

https://bitbucket.org/excentia/sonarqube-tattletale-plugin/src/master/ no 7.9(only 5.6) support but provides

Identify dependencies between JAR files
Spot if a class/package is located in multiple JAR files
Spot if the same JAR file is located in multiple locations

best regards

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant