
148: Security Scanning our Apps with Sobelow
Thinking Elixir Podcast
00:00
How to Securing Elixir
Holden: I thought that Amazon and all the related Amazon stuff mostly focused on Java. Did not know that, but not have guessed it. So below is a static code analysis tool. Primarily it's run as a mixed task in the CI pipeline or locally to check for known bad patterns in Elixir code bases. It was traditionally used on Phoenix framework projects, but it also works on just normal Elixir code bases as well.
Transcript
Play full episode