It has been another whole year of Brakeman Pro!
Let’s take a look back at some highlights from the past year (the full list too long):
In Brakeman Pro Desktop:
- Refreshed UI!
- Many scan options can now be set in Desktop
- False positive
ignore
files can be imported and exported - Ability to import reports from Engine gem
- Excel/XLSX report generation
- Automatically check for updates
In Brakeman Pro Engine:
- New default text report format with expanded information
- New rules:
- XSS via unquoted attributes
- Disabled SSL verification in popular libraries
- Devise best practices
- Missing
httponly
flag on cookies
- New
--export
option to Engine to allow importing reports into Desktop - Handle branching in
case
expressions - Handle conditional guards that use
return
,raise
, orfail
--exit-on-warn
and--exit-on-error
are now the default- …and 60+ other fixes, improvements, and new features
Also, we have now been supporting Ruby Together for a full year.
On the business side, we have more than doubled our customer base and revenue. Thank you!
Want to know more about Brakeman Pro?
Brakeman Pro is a static analysis security tool for Ruby on Rails applications.
Brakeman Pro can be used as a desktop application, Ruby Gem, and as a Code Climate engine.
If you have not purchased Brakeman Pro yet, you can review pricing and purchase licenses directly from our site.
Need to try before buying? Take Brakeman Pro Desktop for a spin.
Please feel free to contact us with any questions!