Synopsys Code Sight for Visual Studio Code
The Synopsys® Code Sight™ extension helps you find and fix security and quality issues in your software while you code. It can quickly identify vulnerabilities in both source code and open source dependencies, and help you fix them right in the IDE. Once the issues have been identified, Code Sight provides detailed remediation guidance and access to training directly in the IDE to help you quickly fix issues today and write better code going forward.
Code Sight uses integrated, lightweight analysis of your code and open source dependencies without requiring a heavyweight Static Analysis (SAST) or Software Composition Analysis (SCA) tool.
Code Sight can be used as a standalone extension for secure development (free trial available) or included with active subscriptions of other Synopsys Application Security Testing (AST) solutions.
Code Sight Extension for Black Duck, Coverity, the Polaris Platform, and Software Risk Manager
Extend the capabilities of your Synopsys tools to the developer desktop
Users subscribing to the Polaris Software Integrity Platform® or Software Risk Manager (formerly Code Dx) can leverage the rapid, lightweight Code Analysis and Open Source Analysis for free, directly within the IDE. Users subscribing to Coverity® SAST or Black Duck® SCA can leverage the rapid analysis for free, as well as additional analysis capabilities enabled by their solution.
After you install the Code Sight extension, simply select the solution(s) for which you have an active license (e.g., Coverity, Black Duck, the Polaris platform, Software Risk Manager) to use Code Sight with these solutions.
Code Sight Free Trial
Sign up for a free trial of Code Sight and get started in only a couple of minutes.
Sign-up for the trial directly within the extension and start scanning code in less than five minutes. Contact us if you have any license or product questions.
Using Code Sight
Follow these simple steps to use the Code Sight IDE extension to analyze your projects:
For more information on connecting Code Sight to other Synopsys AST solutions or to learn more, refer to the following:
Additional information about the Code Sight extension can be found here:
Code Sight can scan large projects and development artifacts in seconds, including:
Code Sight will alert you to any detected issues, including:
Code Sight provides helpful risk insight, including:
By downloading this extension, you are agreeing to the Synopsys End User License Agreement. Users with active commercial licenses for Coverity, Black Duck, the Polaris platform, or SRM can also use Code Sight free-of-charge.
Request SBOM: email email@example.com