DevSkim logo

DevSkim

A set of IDE plugins and rules that provide security "linting" capabilities (by Microsoft)
0
3
+ 1
0

What is DevSkim?

It is a framework of IDE extensions and language analyzers that provide inline security analysis in the dev environment as the developer writes code. It has a flexible rule model that supports multiple programming languages. The goal is to notify the developer as they are introducing a security vulnerability in order to fix the issue at the point of introduction, and to help build awareness for the developer.
DevSkim is a tool in the Security category of a tech stack.
DevSkim is an open source tool with 913 GitHub stars and 116 GitHub forks. Here’s a link to DevSkim's open source repository on GitHub

DevSkim Integrations

JavaScript, Python, Visual Studio Code, Java, and TypeScript are some of the popular tools that integrate with DevSkim. Here's a list of all 10 tools that integrate with DevSkim.

DevSkim's Features

  • Built-in rules, and support for writing custom rules
  • Cross-platform CLI built on .NET Core 3.1 for file analysis
  • IDE plugins for Visual Studio and Visual Studio Code
  • IntelliSense error "squiggly lines" for identified security issues
  • Information and guidance provided for identified security issues
  • Optional suppression of unwanted findings
  • Broad language support including: C, C++, C#, Cobol, Go, Java, Javascript/Typescript, Python, and more

DevSkim Alternatives & Comparisons

What are some alternatives to DevSkim?
Postman
It is the only complete API development environment, used by nearly five million developers and more than 100,000 companies worldwide.
Postman
It is the only complete API development environment, used by nearly five million developers and more than 100,000 companies worldwide.
Stack Overflow
Stack Overflow is a question and answer site for professional and enthusiast programmers. It's built and run by you as part of the Stack Exchange network of Q&A sites. With your help, we're working together to build a library of detailed answers to every question about programming.
Google Maps
Create rich applications and stunning visualisations of your data, leveraging the comprehensiveness, accuracy, and usability of Google Maps and a modern web platform that scales as you grow.
Elasticsearch
Elasticsearch is a distributed, RESTful search and analytics engine capable of storing data and searching it in near real time. Elasticsearch, Kibana, Beats and Logstash are the Elastic Stack (sometimes called the ELK Stack).
See all alternatives
Related Comparisons
No related comparisons found

DevSkim's Followers
3 developers follow DevSkim to keep up with related blogs and decisions.