You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@fineract.apache.org by "Thisura (JIRA)" <ji...@apache.org> on 2017/06/03 04:12:04 UTC

[jira] [Commented] (FINERACT-477) Integrate TOIF static analysis into apache-fineract

    [ https://issues.apache.org/jira/browse/FINERACT-477?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16035794#comment-16035794 ] 

Thisura commented on FINERACT-477:
----------------------------------

A POC is done at [github\[1\]|https://github.com/ThisuraThejith/incubator-fineract/tree/develop-TOIF]. The effective changeset is shown in this [PR\[2\]|https://github.com/ThisuraThejith/incubator-fineract/pull/1].

\[1\] https://github.com/ThisuraThejith/incubator-fineract/tree/develop-TOIF
\[2\] https://github.com/ThisuraThejith/incubator-fineract/pull/1

> Integrate TOIF static analysis into apache-fineract
> ---------------------------------------------------
>
>                 Key: FINERACT-477
>                 URL: https://issues.apache.org/jira/browse/FINERACT-477
>             Project: Apache Fineract
>          Issue Type: Bug
>            Reporter: Thisura
>            Assignee: Markus Geiss
>              Labels: gsoc2017, security
>
> [Tool Output Integration Framework|http://kdmanalytics.com/resources/open-source-toif/] is an opensource security scanning tool which can integrate scanning reports from other opensource tools like [FireBugs|http://jlint.sourceforge.net/] and [Jlint|http://jlint.sourceforge.net/]. 
> It is possible to write additional adapters to whatever the tool we want. 
> As a part of "Static Analysis of Apache Fineract Project" for this summer, TOIF should be integrated with apache-fineract. After successful integration community will be able to see the summarized integrated report using multiple tools at one place.



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)