NOTE: This action has been deprecated and will not work after February 14, 2025. It is required that you migrate to our new Black Duck Security Scan. Migration instructions can be found here. Documentation for the new Black Duck Security Scan can be found here.
Synopsys Action allows you to integrate Static Analysis Security Testing (SAST) and Software Composition Analysis (SCA) into your CI/CD pipelines. Synopsys Action leverages Synopsys Bridge, a foundational piece of technology that has built-in knowledge of how to run all major Synopsys security testing solutions, plus common workflows for platforms like GitHub.
To use Synopsys Action, please follow the steps below:
- Configure GitHub as described in the GitHub Prerequisites page.
- Install and configure Synopsys Action for the Synopsys product you are using.
Polaris
Black Duck
Coverity - For additional configuration options, visit the Additional GitHub Configuration page.
As an alternative to Synopsys Action, you also have the option to use Synopsys Bridge CLI.
Detailed documentation for Synopsys Bridge CLI can be found here.