Libraries and Software Composition Analysis
Use Contrast's repository scanning capabilities to look for known vulnerabilities in the software components that are included in a repository. If a vulnerability is found, it will report the vulnerability to the repository owner. The owner can then take steps to fix the vulnerability or to mitigate the risk posed by the vulnerability.
Connect with repositories
Connect Contrast SCA to a GitHub, Bitbucket, or Gitlab account and perform SCA scans.
Connect with the Contrast Security GitHub App
Connect to Bitbucket
Connect to GitLab
Note
Connections to Bitbucket and GitLab are available by request only. Contact Support to enable the connection.