Skip to content

Implement SafeGradle security checks and features#9

Merged
flsalla merged 1 commit into
mainfrom
v0.34
Jun 3, 2026
Merged

Implement SafeGradle security checks and features#9
flsalla merged 1 commit into
mainfrom
v0.34

Conversation

@MohammedAlaaMorsi
Copy link
Copy Markdown
Owner

  • Add OsvAdvisoryClient for querying vulnerabilities from OSV API.
  • Introduce PinDynamicVersionIntention to replace dynamic versions with placeholders.
  • Create SafeGradleBaseline for managing security violation baselines.
  • Implement SafeGradleFileWatcher to monitor changes in relevant Gradle files.
  • Add SafeGradleInspection for real-time security checks in Gradle files.
  • Create SafeGradleScanHistory to track scan results over time.
  • Develop SafeGradleStatusBarWidget for displaying security status in the IDE.
  • Implement SafeGradleYamlSchemaProvider for .safegradle.yml schema support.
  • Add WeakCryptoCheck to detect weak cryptographic algorithms in build scripts.
  • Create JSON schema for .safegradle.yml configuration.
  • Implement comprehensive unit tests for various security checks.

- Add OsvAdvisoryClient for querying vulnerabilities from OSV API.
- Introduce PinDynamicVersionIntention to replace dynamic versions with placeholders.
- Create SafeGradleBaseline for managing security violation baselines.
- Implement SafeGradleFileWatcher to monitor changes in relevant Gradle files.
- Add SafeGradleInspection for real-time security checks in Gradle files.
- Create SafeGradleScanHistory to track scan results over time.
- Develop SafeGradleStatusBarWidget for displaying security status in the IDE.
- Implement SafeGradleYamlSchemaProvider for .safegradle.yml schema support.
- Add WeakCryptoCheck to detect weak cryptographic algorithms in build scripts.
- Create JSON schema for .safegradle.yml configuration.
- Implement comprehensive unit tests for various security checks.
@flsalla flsalla merged commit d88c7c7 into main Jun 3, 2026
4 of 6 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants