Automated scanning of Java code

Using enterprise version 8.X.

I am trying to scan Java repos where I don’t know what the dev teams use (e.g. Maven, Gradle, etc) to build their code. Our org has some older cold that is not actively developed but is still in production.

Any suggestions?


8.x is past EOL, unless you mean the current LTS, 8.9.3.

Regarding analyzing your projects, I suggest you work with the project teams to get analysis added to their build pipelines. The build technology & best scanner to use should naturally come out of those conversations.