Files
DependencyCheck/dependency-check-ant
Jeremy Long 6c4171be75 added documentation about disabling the central analyzer
Former-commit-id: b5773b6b4877b16f8b5b92640a55ad96e2ae1295
2014-12-28 09:10:54 -05:00
..
2014-01-16 18:34:02 -05:00
2013-07-31 10:21:31 -04:00
2014-12-09 06:38:26 -05:00
2014-01-16 18:34:02 -05:00

Dependency-Check Ant Task

Dependency-Check Ant Task can be used to check the project dependencies for published security vulnerabilities. The checks performed are a "best effort" and as such, there could be false positives as well as false negatives. However, vulnerabilities in 3rd party components is a well-known problem and is currently documented in the 2013 OWASP Top 10 as A9 - Using Components with Known Vulnerabilities.

Documentation and links to production binary releases can be found on the github pages.

Mailing List

Subscribe: dependency-check+subscribe@googlegroups.com

Post: dependency-check@googlegroups.com

Dependency-Check is Copyright (c) 2012-2014 Jeremy Long. All Rights Reserved.

Permission to modify and redistribute is granted under the terms of the Apache 2.0 license. See the LICENSE.txt file for the full license.

Dependency-Check-Ant makes use of other open source libraries. Please see the NOTICE.txt file for more information.