Skip to content

Find additional security plugins for Gradle and Maven #493

Open
@jwlibby

Description

@jwlibby

Choose a build plugin to bake "security checks" into Gradle and Maven, and avoid configuring each tool separately.

  1. Identify at least a few plugins for security and create spike issues to try out the plugins
  2. Separate chapter in wiki on build plugins.
  3. Updates to relevant wiki pages to reference these.

Reference the spotbugs security plugin.

Note the existing use of find-sec-bugs (a plugin for Spotbugs) -- this card can do more.

Metadata

Metadata

Assignees

No one assigned

    Labels

    securityShifting security leftspikeExplore options and questions

    Projects

    Status

    No status

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions