The Dependency-Track plugin allows Fortify Software Security Center (SSC) to integrate results from Dependency-Track alongside findings from Fortify Static Code Analyzer (SCA), providing a consolidated view of security-centric code findings and vulnerable component findings.
Dependency-Track
Software Supply Chain Component Analysis Platform
Identifies risk in 3rd party and open source components
Flagship OWASP project
Open source – Apache 2.0 license
LEARN MORE about Dependency-Track: https://dependencytrack.org
Fortify SSC Plugin API:
https://github.com/fortify/plugin-api
Dependency-Track SSC Plugin:
https://github.com/DependencyTrack/fo...
https://marketplace.microfocus.com/fo...
CycloneDX
https://cyclonedx.org
LEARN MORE about Fortify: https://software.microfocus.com/en-us...
LEARN MORE about how Micro Focus was named a leader in the 2019 Gartner MQ for Application Security Testing: https://software.microfocus.com/en-us...
SUBSCRIBE TO FORTIFY UNPLUGGED: / @fortifyunplugged