Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/jenkinsci/contrast-continuous-application-security-plugin
Jenkins Plugin from Contrast Security
https://github.com/jenkinsci/contrast-continuous-application-security-plugin
devsecops jenkins jenkins-plugin security security-tools vulnerabilities
Last synced: 13 days ago
JSON representation
Jenkins Plugin from Contrast Security
- Host: GitHub
- URL: https://github.com/jenkinsci/contrast-continuous-application-security-plugin
- Owner: jenkinsci
- Created: 2016-07-13T08:36:32.000Z (over 8 years ago)
- Default Branch: master
- Last Pushed: 2024-08-09T09:49:58.000Z (4 months ago)
- Last Synced: 2024-11-21T14:38:52.188Z (21 days ago)
- Topics: devsecops, jenkins, jenkins-plugin, security, security-tools, vulnerabilities
- Language: Java
- Homepage: https://plugins.jenkins.io/contrast-continuous-application-security/
- Size: 2.25 MB
- Stars: 13
- Watchers: 7
- Forks: 12
- Open Issues: 4
-
Metadata Files:
- Readme: README.md
Awesome Lists containing this project
- awesome-hacking-lists - jenkinsci/contrast-continuous-application-security-plugin - Jenkins Plugin from Contrast Security (Java)
README
![Jenkins Cat](img/jenkins-cat.png "Jenkins Cat" )
# Contrast Jenkins Plugin
Repository for the Contrast Jenkins plugin. This plugin adds the ability to configure a connection to a Jenkins Build.
## Requirements
* Jenkins version >= 2.60.3
> Note: for Jenkins versions between 1.625.3 and 2.60.3, use plugin version [2.12.1](https://github.com/jenkinsci/contrast-continuous-application-security-plugin/releases/tag/contrast-continuous-application-security-2.12.1)## Documentation
[Contrast Docs](https://docs.contrastsecurity.com/en/jenkins.html)## Charts
There are 2 charts that are generated after each build `Vulnerability Trends Across Builds` and `Severity Trends Across Builds`.
Here are two examples of the charts:
![Severity Trends Across Builds](img/severity_trends.png)
![Vulnerability Trends Across Builds](img/vuln_trends.png)
> **Note:** The Vulnerability Report is not supported by the pipeline step and jobs that have applications with overridden Vulnerability Security Controls. Your Contrast admin can override the Vulnerability Security Controls for certain applications using the Job Outcome Policies in Contrast.
## Exported Configurations
[TeamServer Profile Config](contrastPluginConfig.xml)
[Contrast Vulnerability Security Controls Config](vulnerabilityTrendRecorderConfig.xml)
## Building the plugin
`mvn clean install`
## Running Locally
`./run.sh`