Gerrit Integration
Gerrit Code Review
SAST WHEN SAFETY AND SECURITY MATTER
CodeSonar integrates with Gerrit Code Review and allows you to annotate every code review with the results of a CodeSonar analysis. CodeSonar scan results are available from the review page, and teams can configure the integration to automatically add a code review vote based on criteria they set. Teams can now commit code to master with even higher confidence, knowing that a code review includes static analysis.
Capabilities & Benefits
- With each merge request, CodeSonar can automatically analyze your code and populate the assocaited code review in Gerrit with any vulnerabilities found.
- The integration can be configured to vote for or against the change, depending on your preference and the result of the scan.
- Having all the necessary data in one location before starting the review increases the efficiency of the team and ensures that remaining compliant with a process is easy.
Watch a developer’s journey using Gerrit and Jenkins.
Watch videoBook a Demo
We’re ready to help you integrate SAST and BCA security into your DevSecOps flow. Get a personally guided tour of our solution offerings to ensure you are receiving the right solution for your development team.
book now