Based on our record, Reek should be more popular than Checkmarx. It has been mentiond 4 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.
Rubycritic uses reek under the hood so I added a reek config files at .reek.yml with the following content:. - Source: dev.to / 4 months ago
Reek is a code smell detection tool for Ruby that helps identify potential design issues. It analyzes your codebase and provides feedback on areas that might benefit from refactoring or improvement. Here's an overview of what Reek is and how to use it:. - Source: dev.to / 11 months ago
$ reek app/controllers/erp/orders_controller.rb Inspecting 1 file(s): S App/controllers/erp/orders_controller.rb -- 1 warning: [91]:UncommunicativeVariableName: Erp::OrdersController#create has the variable name 'e' [https://github.com/troessner/reek/blob/v6.1.1/docs/Uncommunicative-Variable-Name.md]. - Source: dev.to / over 1 year ago
Other useful gems you may take a look at are dawnscanner, reek, and hakiri_toolbelt. - Source: dev.to / over 2 years ago
Automate security testing: Use tools such as OWASP ZAP, SonarQube, or Checkmarx to automate security testing. This will help you identify security issues early in the development process and reduce the risk of vulnerabilities being introduced into your code. - Source: dev.to / about 1 year ago
Application Security (AppSec) is the forte of Checkmarx, which is an award-winning AppSec Testing tool that integrates security policies into the DevOps workflow and ensures security across the application lifecycle. Checkmarx scans all your code and provides actionable insights for critical vulnerabilities. Checkmarx also offers developer-friendly AppSec training that makes the transition to DevSecOps more... - Source: dev.to / over 2 years ago
RuboCop - A Ruby static code analyzer, based on the community Ruby style guide.
SonarQube - SonarQube, a core component of the Sonar solution, is an open source, self-managed tool that systematically helps developers and organizations deliver Clean Code.
Brakeman - Brakeman is a static analysis security vulnerability scanner for Ruby on Rails applications.
Coverity Scan - Find and fix defects in your Java, C/C++ or C# open source project for free
Veracode - Veracode's application security software products are simpler and more scalable to increase the resiliency of your application infrastructure.
CodeClimate - Code Climate provides automated code review for your apps, letting you fix quality and security issues before they hit production. We check every commit, branch and pull request for changes in quality and potential vulnerabilities.