Scan and fix in your IDE
Audience: Developers
Learning objectives
Upon completion of this module, you'll be able to:
- Install and set up Veracode Scan for VS Code.
- Clone the verademo sample application that you can scan in your IDE.
- Run Static Analysis scans and review flaws in your IDE.
- Run Software Composition Analysis (SCA) scans and review vulnerabilities in your IDE.
- Fix flaws in your IDE with remediation guidance or suggested fixes from Veracode Fix.
- Resolve vulnerable libraries in your IDE.
Set up and use Veracode Scan for VS Code
~35 min
Install the VS Code extension, clone a demo application, scan your project, and fix findings in your IDE.
- Install and set up the extension
~5 min - Optional. Clone a demo application for scanning
~2 min - Run a Static Analysis scan and review flaws
~7 min - Run a SCA scan and review vulnerabilities
~7 min - Fix flaws in your code
~9 min - Resolve vulnerable libraries
~5 min