jsprime icon indicating copy to clipboard operation
jsprime copied to clipboard

Question about terms used in the static analysis results

Open neomatrix369 opened this issue 8 years ago • 0 comments

What does “Active” and “Non-Active” mean in the context of the analyser.

Active Source is passed which is reached to the sink later
Active Source is passed through the variable
Non-Active Source assigned to variables

When one or more of these appear on the report, for e.g.:

Active Source
Active Source is passed which is reached to the sink later
9 authService.store(response.data);

There are similar examples for the other types as well.

Any documentation available to be able to read and understand the report generated.

neomatrix369 avatar Jul 15 '16 14:07 neomatrix369