Badges

40 Points
3 Years

User Activity

9 months ago
This tool is also known to work : https://fossa.com/
10 months ago
Let me chase up with one of my developers - we did this for a large consultancy who had existing subscriptions embedded into the ADO pipelines we built. I will check and get back to you .
10 months ago
@Rohit Sircar MUnit, SonarQube are for testing/code quality - but not for jar and source vulnerability scanning...
10 months ago
We also found this issue, related to the specific POM package for MuleSoft. Quite a few of the tools don't support this. We did however have some success with Fortify on Demand and mend.io WhiteSource.

Answers