![]() The Lifecycle algorithms will not identify them as separate dependencies, as these jars could be similarly matched to modified open-source components. Uber jars are a way to include dependencies by copying in their contents when the jar is built. A Lifecycle evaluation will pick up any dependencies packaged into the archive or included in the target directory. After a normal CI build, add a post-build step to do the analysis using the CI Plugins or the CLI Scanner. ![]() For the best results, we recommend using the post-build artifact as the scan target (what you are planning to deploy) as it will contain all the direct and transitive dependencies required by the project. Java scanning supports packaged archives including (. On this pageĮvaluation: Advance Binary FingerprintingĮvaluation: Source code and manifest analysis These include the most popular languages in use by the developer community, e.g., Kotlin, Scala, Groovy, Clojure, Fantom, Ceylon, JRuby, Golo, etc. ![]() IQ server Java application analysis supports most JVM-based languages and is not limited to Java only. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |