Tag: #sast
Writing on GPUs, LLMs, MLOps, Kubernetes — and mindset · 3 posts
Code Quality & Static Analysis 2026 Deep Dive — SonarQube · CodeClimate · Codacy · DeepSource · Qodo Cover · Snyk Code · Semgrep · ESLint
A May 2026 deep dive across the code quality and SAST ecosystem. Covers platforms (SonarQube 10.x, SonarCloud, CodeClimate, Codacy, DeepSource, Qodana, Qodo Cover), SAST engines (Semgrep 1.x, CodeQL, Snyk Code, Veracode,
2026-05-16 · 21 min read #code-quality#static-analysis#sonarqube#codeclimate#codacyStatic Analysis / SAST 2026 — Semgrep / CodeQL / Snyk / SonarQube / Aikido / Trivy Deep Dive
Mapping the 2026 code security tooling landscape — Semgrep (the de facto OSS SAST plus Pro engine and Supply Chain), CodeQL (the heart of GitHub Advanced Security, dataflow king), Snyk Code (SAST+SCA after the DeepCode A
2026-05-15 · 26 min read #security#sast#static-analysis#semgrep#codeqlThe Complete DevSecOps Guide 2025: Shift-Left Security, SAST/DAST/SCA, Container Security
Everything about DevSecOps! Shift-Left security strategy, SAST (SonarQube/Semgrep), DAST (ZAP/Burp), SCA (Snyk/Dependabot), Container security (Trivy), Supply chain security (SBOM/SLSA), Secret detection, GitHub Actions
2026-03-24 · 20 min read #devsecops#security#shift-left#sast#dast