
Jon J (Veracode Product Manager) (Veracode) asked a question.
Today we are announcing three new capabilities for pipeline scan:
- New (optional) metadata parameters users can add to their scan submissions so that they can track the App ID in the Veracode platform that the pipeline scan is used for, as well as the development stage that it's being used within. Both of these values are available in analytics and can be used to help draw a correlation between pipeline scan activity and platform scan activity.
- New code example demonstrating how to setup pipeline scans with Github Actions
- New code examples demonstrating how to setup pipeline scans with Azure DevOps
Reminder that Pipeline Scan is included with all Veracode Static Analysis licenses, and supports Java, JavaScript, TypeScript, Groovy, Kotlin, and Scala apps - with more languages on the way!
.png)