What it does
Bugsy is a command-line tool from the community edition of Mobb that finds security vulnerabilities in code written by people or AI, and proposes fixes. Scan mode runs Checkmarx or Snyk on a repository. Analyze mode reads an existing SAST report from tools such as CodeQL or Fortify. Developers review each fix before they commit it.
Use cases
- 01Scan a repository for vulnerabilities
- 02Turn an existing SAST report into proposed fixes
- 03Review AI-written code before a release