Giter Site home page Giter Site logo

groupon / codeburner Goto Github PK

View Code? Open in Web Editor NEW
83.0 11.0 18.0 2.71 MB

Security-focused static code analysis for everyone

Home Page: http://groupon.github.io/codeburner

License: MIT License

Ruby 54.47% HTML 21.31% JavaScript 2.47% CoffeeScript 19.80% CSS 1.71% Shell 0.08% Dockerfile 0.17%

codeburner's Introduction

Codeburner Codeburner

One static analysis tool to rule them all.

What's new?

Version 1.2

  • Added support for Snyk
  • GitHub OAuth
  • Settings GUI w/ admin-only access control
  • Re-designed burn submission process searches repositories via GitHub API
  • lots of UI tweaks/improvements

What is Codeburner?

Codeburner is a tool to help security (and dev!) teams manage the chaos of static code analysis. Sure, you can fire off a bunch of scripts at the end of every CI build... but what do you actually DO with all those results?

Codeburner uses the OWASP Glue project to run multiple open source and commercial static analysis tools against your code, and provides a unified (and we think rather attractive) interface to sort and act on the issues it finds.

Key Features

  • Asynchronous scanning (via sidekiq) that scales
  • Advanced false positive filtering
  • Publish issues via GitHub or JIRA
  • Track statistics and graph security trends in your applications
  • Integrates with a variety of open source and commercial scanning tools
  • Full REST API for extension and integration with other tools, CI processes, etc.

Supported Tools

** commercial license required

Documentation

You can find full documentation for Codeburner at http://groupon.github.io/codeburner

Quick Start

See our Quick Start Guide if you want to try out Codeburner as quickly as possible using Docker Compose.

Installation

See our Installation Guide for complete manual install instructions.

User Guide

The User Guide will give you an overview of how to use Codeburner once you have things up and running.

Get Involved!

If you'd like to contribute, fork us on GitHub and check out the Developer Guide.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.