Movatterモバイル変換


[0]ホーム

URL:


Skip to content
DEV Community
Log in Create account

DEV Community

mortylen
mortylen

Posted on

Ask: Static Code Analysis Tools.

Hello, developers.
How do you verify the security of your source codes? Do your customers require you to check the code? I don't have much experience with code checking, I found tools likeSnyk, Varcode, OpenText Fortify...

What security tools do you use for code analysis for web application development in Visual Studio, especially for ASP.NET Core Web App? Which ones have you tried, which ones are you most comfortable with?

I would be grateful for your comments.

Top comments(2)

Subscribe
pic
Create template

Templates let you quickly answer FAQs or store snippets for re-use.

Dismiss
CollapseExpand
 
flxg profile image
Felix Garriau
Helping devs efficiently secure their code & cloud
  • Location
    Belgium, Europe
  • Work
    CMO & Cofounder @ Aikido Security
  • Joined

Hi Mortylen! I'd recommend anyone to have a look at James Berthoty's listings for the best tools:list.latio.tech/#best-SAST-tools He's a security expert and knows all the cool tools - my source of reference for great analysis.
SAST is just one of the things typically required to secure your code.
SAST, DAST, SCA are like the typical starters & the security industry is moving towards single platforms that encompass everything.
We've builtaikido.dev ourselves to bring all types of scanners together.

CollapseExpand
 
mortylen profile image
mortylen
It's easy to make software: all you have to do is touch the right key at right time and the software will run without errors.
  • Work
    Software developer for industry
  • Joined

Thank you for the reply and for great tips.
I am looking for all information that will help me to improve the quality and security of our software development.

Are you sure you want to hide this comment? It will become hidden in your post, but will still be visible via the comment'spermalink.

For further actions, you may consider blocking this person and/orreporting abuse

It's easy to make software: all you have to do is touch the right key at right time and the software will run without errors.
  • Work
    Software developer for industry
  • Joined

Trending onDEV CommunityHot

DEV Community

We're a place where coders share, stay up-to-date and grow their careers.

Log in Create account

[8]ページ先頭

©2009-2025 Movatter.jp