BradleyA / git-TEST-commit-automation

Test automation tool to assist running something, and checking something, then reporting something; when you commit something.
4 stars 1 forks source link

Comment - github.com/returntocorp/semgrep - review new lightweight static analysis security product #57

Open BradleyA opened 3 years ago

BradleyA commented 3 years ago

Tell us what you are thinking about:

->  Review new security product, semgrep, for static testing of OWASP top 10 rules.

https://semgrep.dev/p/owasp-flask

returntocorp/semgrep - Semgrep is a lightweight static analysis, fast, open-source, static analysis tool that finds bugs and enforces code standards at editor, commit, and CI time.

BradleyA commented 3 years ago

Notes: https://semgrep.dev/ https://github.com/returntocorp/semgrep https://r2c.dev/slack

image