JavaScript required
We’re sorry, but Coda doesn’t work properly without JavaScript enabled.
Skip to content
Gallery
Niyo InfoSec Review
Infosec Review
Go Live - Evidences
More
Share
Explore
Go Live - Evidences
SAST
Configuration of Semgrep
We have enabled all the rules in our Semgrep. For all the rules, we block the pipeline as you can see from the configuration
Again you can see in the below configuration of our CI/CD that if Semgrep finds any issues, the pipeline is blocked
For every change this pipeline runs. You see the status here.
Pipeline blocks when there any SAST rule violations
CI/CD - task logs
When there are no Semgrep issues
When there are Semgrep issues
DAST
We run this everyday automatically at midnight. In some cases, we also trigger it manually.
Reports of
Feb 1
Mar 1
Mar 26
Want to print your doc?
This is not the way.
Try clicking the ⋯ next to your doc name or using a keyboard shortcut (
Ctrl
P
) instead.