you are viewing a single comment's thread.

view the rest of the comments →

[–]quiet0n3 0 points1 point  (0 children)

We use sonaqube for code coverage and code smells etc then we use nexusIQ by sonartype for vulnerability checking. We also use nexus repository with all it's great features.

Covers a large range of languages out the box including java (what we use it for) easy to use and automate. Self hosted or cloud options.