Configuration of a scan of an application code
You can use HCL OneTest™ Server to scan your application code for security vulnerabilities similar to using the HCL AppScan CodeSweep plugin to scan code in Visual Studio.
HCL OneTest™ Server is enabled to support scanning of your application code that is in a remote repository.
Before you commit your application code to the remote repository, you must complete certain tasks. See Considerations to scan an application code.
After you commit the assets to the remote repository, you must complete the following
tasks:
- Log in to HCL OneTest™ Server.
- Open the project in your team space.
- Add the remote repository to your project.
- Open the Execution page, and then run a scan of the asset.