This is music to my ears :)
Especially the combination of taint analysis with code coverage would be extremely helpful. The main drawback of dynamic security testing is the uncertainty how reliable/complete the achieved results are (opposed to static analysis, where you know exactly how much code was analysed). _______________________________________________ dev-platform mailing list dev-platform@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-platform