Gerrit Integration

Gerrit Code Review

SAST WHEN SAFETY AND SECURITY MATTER

CodeSonar integrates with Gerrit Code Review and allows you to annotate every code review with the results of a CodeSonar analysis. CodeSonar scan results are available from the review page, and teams can configure the integration to automatically add a code review vote based on criteria they set. Teams can now commit code to master with even higher confidence, knowing that a code review includes static analysis.

Capabilities & Benefits
  • With each merge request, CodeSonar can automatically analyze your code and populate the assocaited code review in Gerrit with any vulnerabilities found.
  • The integration can be configured to vote for or against the change, depending on your preference and the result of the scan.
  • Having all the necessary data in one location before starting the review increases the efficiency of the team and ensures that remaining compliant with a process is easy.

Watch a developer’s journey using Gerrit and Jenkins.  

Watch video

Book a Demo

We’re ready to help you integrate SAST and BCA security into your DevSecOps flow. Get a personally guided tour of our solution offerings to ensure you are receiving the right solution for your development team. 

book now