[Free] PHP Security Scanner created by team & me, asking for feedback!

Discussion in 'Reviews' started by PHPSecure, Nov 17, 2023.

  1. #1
    Hey everyone!

    My team and I have been working on this project for months and now it's finally come to fruition! We'd love to get your feedback on it -- what features work for you and which you'd like to see added, as well as the general feel of the programme etc? It's currently in beta so apologies if a few things may be a lil wonky? (Please let us know if you notice any!)

    It's really cool cause we made it so it gives you a prompt on how to correct the code if it finds a vulnerability and I'd really appreciate it if you gave it a try!

    Thank for reading! Here's the link

    Have a splendid day! Cheers!
     
    PHPSecure, Nov 17, 2023 IP
  2. sarahk

    sarahk iTamer Staff

    Messages:
    28,792
    Likes Received:
    4,529
    Best Answers:
    123
    Trophy Points:
    665
    #2
    Is it a plugin for vscode or phpstorm?
    How does it work?
     
    sarahk, Nov 17, 2023 IP
  3. PHPSecure

    PHPSecure Peon

    Messages:
    8
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    1
    #3
    Hi! Thank you so much for your interest!

    It's not really a plugin yet but we are considering making it into one! So far it's in beta (hence me asking for feedback), at the moment it's a bit clunky cause you need to actually go to the website and put in your code but yeah, we are planning on making it possible to integrate anywhere you need to!

    Sorry if my answer is a bit messy, I'm running on very few hours of sleep aha and between having hyperfixated on coding for this for months and now trying to get feedback on whether or not it's actually legit from other programmers, I feel like I'm starting to barely make sense even to myserlf OTL

    If I didn't answer your question can you please re-word it and I'll hopefully get to it once I have slept :p Cheers again for responding!
     
    PHPSecure, Nov 18, 2023 IP
  4. PHPSecure

    PHPSecure Peon

    Messages:
    8
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    1
    #4
    oh lmao I see that I've missed actually linking the thing
    that Neil Gaiman rule fr

    here it is phpsecure(.)net/landing

    edit: for some reason it just won't embed?? anyway. there! :D
     
    PHPSecure, Nov 18, 2023 IP
  5. sarahk

    sarahk iTamer Staff

    Messages:
    28,792
    Likes Received:
    4,529
    Best Answers:
    123
    Trophy Points:
    665
    #5
    It looks good and the github option will probably be the most useful to me if there isn't going to be a plugin.
     
    sarahk, Nov 20, 2023 IP
  6. PHPSecure

    PHPSecure Peon

    Messages:
    8
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    1
    #6
    Thank you so much for your feedback! Sorry for the late response, we have been working hard on GitHub and GitLab integration and I'm happy to report that both options are available now! :D
     
    PHPSecure, Nov 23, 2023 IP
  7. sarahk

    sarahk iTamer Staff

    Messages:
    28,792
    Likes Received:
    4,529
    Best Answers:
    123
    Trophy Points:
    665
    #7
    Well done, I'll take a look!
     
    sarahk, Nov 25, 2023 IP
  8. PHPSecure

    PHPSecure Peon

    Messages:
    8
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    1
    #8
    Great news! You asked - we delivered! When we first started, scanning your project required you to click the Scan button and upload your code. You could package your project and upload it as one archive file, or upload up to 15 individual PHP files.

    Our users asked us to add integrations with GitHub and GitLab to allow automated secure code checks to your CI/CD pipeline. Voila - now you can connect PHP Secure to your repository and run automated scans directly in your workflow!

    Adding secure code checks to your existing workflow is easy. We have included all the step-by-step instructions to make it simple. Just follow the instructions carefully to set it up without a hitch.

    Once connected, every time it is deployed, PHP Secure will check your project for vulnerabilities. Whenever new vulnerabilities are found, you'll be notified. You can view your scan results in your PHP Secure account.

    Keep your applications secure and prevent deployment of vulnerable applications or components (registries) by adding PHP Secure to the build as a step in the pipeline.

    What do you think of this new feature?

    We strive to be on the cutting edge and offer you a superior product for years to come! Do you have any suggestions for improvement?
    [​IMG]
     
    PHPSecure, Dec 4, 2023 IP