Company
Date Published
Author
Katie Hyman
Word count
2129
Language
English
Hacker News points
None

Summary

Deeper SAST is a new advanced detection analysis tool announced by SonarSource that can find hidden security issues in code and addresses the limitations of traditional SAST tools. This tool analyzes both the code written by developers and the dependencies used in their projects, providing a more holistic view of potential security vulnerabilities. Clean Code is defined as consistent, intentional, adaptable, and responsible code, which is essential for achieving a state of cyber hygiene. Deeper SAST supports organizations in achieving this state of Clean Code by identifying issues that make the code unclean, including security issues, programming errors, and lack of secure coding practices. The tool's differentiation lies in its alignment with market needs and its focus on engineering-level hygiene during development. With the emergence of advanced AI like ChatGPT, SonarSource sees an opportunity to provide more comprehensive code review services, as more code is being written and reviewed by non-developers.