Re: What is the best tool to scan the code?

2019-09-05 Thread Tan,Zhongyi
 3) license analysis You can try fossology, it is an open source project under linux foundation

Re: What is the best tool to scan the code?

2019-09-04 Thread Romain Manni-Bucau
Hi, 1. ossindex from sonatype covers a lot 2. not sure what you means, findbugs or more checkstyle/pmd? 3. rat plugin for example (see apache creadur tools too, there are license tools). Also note that with the initial dep review + review of the license each time a new dep is added in standard

Re: What is the best tool to scan the code?

2019-09-04 Thread Justin Mclean
HI, > We would like to scan our code to: > 1) dependency analysis Most build tools can do this. > 2) snippet matching I don’t know of any open source project that does this, but that not to say ones doesn’t exist. > 3) license analysis Apache Rat is a simple tool that can help with this, if

RE: What is the best tool to scan the code?

2019-09-04 Thread Xun Hu
We would like to scan our code to: 1) dependency analysis 2) snippet matching 3) license analysis 4) binary analysis - optional We found one paid solution - black duck, not sure there is any open source solution on the market. Thanks, -xun -Original Message- From: Justin Mclean

Re: What is the best tool to scan the code?

2019-09-04 Thread Justin Mclean
HI, > We have one open source project, and I would like to find a tool to scan the > code before we open it. Sorry but it unclear to me, what you what to scan the code for. Thanks, Justin - To unsubscribe, e-mail:

What is the best tool to scan the code?

2019-09-04 Thread Xun Hu
Hi, all, We have one open source project, and I would like to find a tool to scan the code before we open it. What is the best tool you can recommend to us? Best, -xun - To unsubscribe, e-mail: