Repository navigation
Include a section on SAST #88
Description
Activity
- changed the title
[-]Iinclude a section on SAST[/-][+]Include a section on SAST[/+]on Apr 29, 2025 This issue is stale because it has been open for 6 months with no activity.
This issue is stale because it has been open for 6 months with no activity.
Hi, I'd be interested in contributing to this issue if it's still relevant for the Developer Guide.
I'm a software engineer with experience in Java, web/mobile applications, and enterprise financial systems. As part of my development work, I've also been involved in static analysis and remediation of application security findings.
I'd be happy to work on a concise, developer-oriented introduction to SAST, following the Developer Guide structure and contribution guidelines.
If this issue is still available, could it be assigned to me?AI disclosure: I used generative AI to help refine the wording of this comment. The professional experience, interest, and intent described above are my own.
Thank you for the AI disclosure - it is good to be open 👍🏾
yes, please go ahead and create this page or section on SAST
Please ensure that the content is your own words and not AI generated (we can all do that :) ) and follow the contributor's guidelines
Describe what change you would like :
It would be good to have a section on static analysis in the implementation section, and add open-source community edition semgrep to the new section
Context :
Section: 05-implementation/
semgrep: https://semgrep.dev/docs/getting-started/quickstart-oss/