Skip to main content

Scan and fix in your IDE

Audience: Developers

Learning objectives

Upon completion of this module, you'll be able to:

  • Install and set up Veracode Scan for VS Code.
  • Clone the verademo sample application that you can scan in your IDE.
  • Run Static Analysis scans and review flaws in your IDE.
  • Run Software Composition Analysis (SCA) scans and review vulnerabilities in your IDE.
  • Fix flaws in your IDE with remediation guidance or suggested fixes from Veracode Fix.
  • Resolve vulnerable libraries in your IDE.
Set up and use Veracode Scan for VS Code
~35 min

Install the VS Code extension, clone a demo application, scan your project, and fix findings in your IDE.

  1. Install and set up the extension
    ~5 min
  2. Optional. Clone a demo application for scanning
    ~2 min
  3. Run a Static Analysis scan and review flaws
    ~7 min
  4. Run a SCA scan and review vulnerabilities
    ~7 min
  5. Fix flaws in your code
    ~9 min
  6. Resolve vulnerable libraries
    ~5 min