📘 Best Practices: Healthcheck API and SCA Findings metadata

Hi all, @Tim J (Veracode PM) (Veracode)​  here with a few new updates--a new Healthcheck API and some improvements for SCA Findings.

 

First, the Healthcheck API provides a quick, fast way to check that your credentials work with Veracode and that the platform is responsive. As we recommended in What Not to Do with the Veracode APIs, it's better to use this API for these purposes than one that may return large amounts of data like getting an application list.

 

Second, we just added additional attributes to the Findings API for SCA that will indicate whether the finding was found in a direct or transitive dependency, and if it was found by SCA Upload Scan or Agent-Based Scan. The direct vs. transitive information in particular is useful for prioritizing SCA findings for fix, and you can filter by both new values.

 

Let me know if you have questions about these new features!


VCode likes this.

Topics (6)

No articles found
Loading

Ask the Community

Get answers, share a use case, discuss your favorite features, or get input from the community.