Re: Intros and offer for daily static analysis runs.

2024-10-03 Thread Alan C. Assis
Hi Mark, Thank you for letting us know about CodeSecure and CodeSonar static analysis. Some years ago I used PVS-Studio (info here: https://acassis.wordpress.com/2017/07/13/using-pvs-studio-to-find-bugs-in-cc/ ), but this kind of software coverage finds tons of false positives. So, we will spend

Intros and offer for daily static analysis runs.

2024-10-03 Thread Mark Hermeling
Hello, I work for CodeSecure, who builds and sells the CodeSonar static analysis tool that detects both coding style violations (think MISRA) as well as deep security vulnerability (think buffer overruns due to tainted data). Over the past while, we have been running CodeSonar on a couple of op