We have a lot on our plate
↓
↓
One year later...
-- ServiceNow Survey
We need tools to help us find vulnerable libraries and other vulnerable stuff in our code.
A CFML Code Security Scanner.
Code that runs automatically based on some trigger (usually commit to source control)
image: java:8
before_script:
- curl --location -o /tmp/box.zip https://example.com/box.zip
- unzip /tmp/box.zip -d /tmp/
- chmod a+x /tmp/box
- /tmp/box install fixinator
fixinator:
script:
- /tmp/box fixinator path=. confidence=high
gitlab-ci.yml
Fixinator
+
+
Fixinator
FuseGuard
HackMyCF
Pricing Starts at $96/month
Thank You!
Questions?