当前位置:网站首页>Zadig + sonarqube, ensuring the safety of the development process
Zadig + sonarqube, ensuring the safety of the development process
2022-06-28 22:24:00 【InfoQ】
Project background
- Source code :koderover/zadig
- The goal is : For daily high-frequency changespkgScan the code under the directory , Sniff the code in time 「 Bad taste 」
How to use
System administrator : Integrate SonarQube
- Sign in SonarQube -> Click the account avatar in the upper right corner ->
My Account.

- Switch to
Securitypage , stayGenerate TokenFill in Token After the name, click... On the rightGeneratebutton .


- stay Zadig In order to access
System settings->Integrated management->Sonar Integrate, Fill in SonarQube Server address and Token Save after information .

The engineer : Configure code scanning


name:zadig-scan
Scan tool:SonarQube
Scanning environment:sonar:latest
Sonar Address: Integrated in the previous step SonarQube Server address
Code information:Zadig The code base
Parameter configuration: Reference resourcesSonarQube file, The configuration in this example is as follows :
# Sonar Parameters
sonar.projectKey=zadig-pkg
sonar.projectName=zadig-pkg
sonar.sources=./pkg
sonar.go.file.suffixes=.go other The engineer : Execute and analyze the results
perform 
see 

Webhook be triggered at any moment
- Configure code scanning , Add trigger .

- When an event that meets the trigger condition occurs ( such as pull request), Code scanning will be performed automatically , Reduce manual intervention costs .


The scanning results shall be fed back in time

边栏推荐
- 给朋友的忠告
- Icon fill color and background color change together
- 爱数SMART 2022峰会开启,分享数据战略与建设数据驱动型组织方法论
- 【HackTheBox】 meow
- 现在还能入“坑”数据分析吗?看看2022年数据分析热门岗位!
- Deploy grafana to realize graphical monitoring
- rosdep update 使用小鱼fishros解决ros1/ros2问题 2022
- Rosdep update using fishros to solve ros1/ros2 problems 2022
- Zadig 面向開發者的自測聯調子環境技術方案詳解
- The new version of OpenAPI engine of Kingdee cloud dome is coming!
猜你喜欢

After crossing, she said that the multiverse really exists

Adding a markdown editor to lavel

Linux Installation mysql5.7 (centos7.6) tutorial

The new version of OpenAPI engine of Kingdee cloud dome is coming!

硬件开发笔记(七): 硬件开发基本流程,制作一个USB转RS232的模块(六):创建0603封装并关联原理图元器件

Use of axurer9 option group

Description détaillée du schéma technique du sous - environnement syntonique auto - test de Zadig pour les développeurs

分享im即时通讯开发之WebSocket:概念、原理、易错常识

Zadig 面向开发者的自测联调子环境技术方案详解

After reading the list of global patent and chip buyers, I understand that high innovation can lead to high profits
随机推荐
SQLSERVER sys. Escape of parameter placeholders in messages
Ctrip will push the "3+2" working mode: 3 days a week on duty and 2 days of free choice of office space. Do you envy it?
Introduction to wrk pressure test tool
爱数SMART 2022峰会开启,分享数据战略与建设数据驱动型组织方法论
Icon fill color and background color change together
Ingénieur natif du nuage après 00: utiliser Zadig pour développer des sources ouvertes et des économies d'énergie pour la technologie innovante (bus de Guangzhou)
PAT 1021. Traversal of the deep root (25 points) graph, DFS, calculating the number of connected components
电商秒杀系统架构设计
QtCreator5.15.0源码编译全过程记录
ansible生产环境使用场景(七):批量部署elk客户端
Rust language survey results in 2021
How many stages did the development and evolution of data analysis go through?
6年心得,从功能测试到测试开发,送给在测试路上一路走到黑的你
After crossing, she said that the multiverse really exists
什么是低代码开发?
F1tenth gym of ROS 2 humble hawksbill
Common tool classes and Commons class libraries
终于有人把云原生架构讲明白了
In order to control the risks, how to choose a franchise company?
现在还能入“坑”数据分析吗?看看2022年数据分析热门岗位!