Sebastien Andrivet

Results 8 issues of Sebastien Andrivet

## What The goal of this rule is to detect Javascript/Typescript code using the AWS CDK that creates ApiGateway/ApiGatewayV2 endpoints without authentication. We already support REST API. We want to...

topic: security
appsec-hardening

As part of a general effort to deprecate hotspots that are no longer useful, we decided to deprecate [S6245](https://sonarsource.github.io/rspec/#/rspec/S6245) "Disabling server-side encryption of `S3` buckets is security-sensitive". `S3` now encrypts...

# What: This rule detects the usage of weak SSL or TLS protocols especially when no explicit version of TLS is specified. Currently, it raises a false positive for AWS...

type: false positive
topic: security
appsec-hardening

## Review A dedicated reviewer checked the rule description successfully for: - [x] logical errors and incorrect information - [x] information gaps and missing content - [x] text style and...

python
jsts

## Review A dedicated reviewer checked the rule description successfully for: - [ ] logical errors and incorrect information - [ ] information gaps and missing content - [ ]...

go

## Review A dedicated reviewer checked the rule description successfully for: - [ ] logical errors and incorrect information - [ ] information gaps and missing content - [ ]...

go

## Review A dedicated reviewer checked the rule description successfully for: - [ ] logical errors and incorrect information - [ ] information gaps and missing content - [ ]...

## Review A dedicated reviewer checked the rule description successfully for: - [ ] logical errors and incorrect information - [ ] information gaps and missing content - [ ]...

iac