Announcing Snyk for Bitbucket Pipelines
We’re excited to announce Snyk for Bitbucket Pipelines, which makes it easy to stay secure if you’re managing your work with the Atlassian product stack.

4276 articles
4276 ARTICLES
We’re excited to announce Snyk for Bitbucket Pipelines, which makes it easy to stay secure if you’re managing your work with the Atlassian product stack.



You can now receive Snyk security alerts via Slack! This blog provides an overview of how to implement Snyk’s Slack integration.

What should I defend my application against? Should I deal with Cross-Site Scripting (XSS) attacks? How about SQL injection? Should I protect myself against cross-site request forgery? The short answer is yes. But as always, it’s not that simple.

A discussion for JS developers about how to have some fun with the useful ECMAScript 2015 “Proxy” feature, which enables you to create a proxy for another object.

Snyk founder Guy Podjarny joins Courtney Nash on the new O’Reilly Security podcast, discussing key topics such as: - Why developers should own security, and why they haven’t done so yet - How can we bring the DevOps revolution into the world of security - What are each of our roles in improving Open Source Security - More tactically, handling vulnerabilities in open source components

A focus on the engineering team goal of getting things shipped, and what helps us achieve this at Snyk. There are several practices we observe in our development cycle that bind well and keep us shipping all the time; this post outlines the philosophy behind our approach and the continuous delivery practices we use.

Dependencies are extremely powerful, but also open up a world of complexity. To successfully secure these packages in your application, you need to consider security as a natural aspect of quality. This means embedding it into your suite of quality tools and practices, making handling security the default.

Despite having been around for over 20 years, HTTPS always remained very lightly adopted – until 2016. Data from two independent sources shows that HTTPS adoption more than doubled from 2015 to 2016. Snyk CEO Guy Podjarny digs into this data.

Creating Snyk’s GitHub integration, released in late June, helped clarify the different steps to truly address vulnerable dependencies, both immediately and in a continuous fashion. These steps are consistent across packaging systems, from npm to Maven to Chef cookbooks. This post explains each step, why they are needed, and how to apply them with Snyk.

We’re removing the Beta tag fromSnyk and adding two long-awaited features: tight GitHub integration and organization support.

We often talk about the growing number of npm dependencies, and how they make us productive and fast or fragile and insecure. But what exactly is an npm dependency? This post defines the ways to look at an npm dependency.
Cookies
We use analytics cookies (Google Analytics) to improve this site. Accept to allow them. Privacy Policy