Black Duck® Code Sight™ provides an interface for viewing issues reported by various Black Duck software-integrity products, to help improve the security and reliability of your source code.

Attention: Code Sight and certain other software-integrity products are migrating to Black Duck Software, Inc. For information about updating your Code Sight installation, please visit the following Black Duck Community page: HOW TO: Migrating existing Synopsys Code Sight users to the new Black Duck Code Sight.

Code Sight displays the issues it has found within the interface of the development environment that you are using and in many cases, provides ways to correct those issues.

Code Sight interactive tours

Code Sight for Black Duck analysis products

The information that Code Sight displays can vary, depending on which analysis product you run. Code Sight is capable of running multiple products.

These are the solutions that Code Sight supports:

  • Coverity (Code Analysis)

    Code Analysis is static analysis (SAST) testing. The tools for this are Rapid Scan Static and Coverity, including Coverity on Polaris.

  • Black Duck SCA (Open Source Analysis)

    Open Source Analysis is also known as software composition analysis (SCA). The tools for this are Rapid Scan SCA and Black Duck.

  • Polaris

    Polaris is a cloud-based product that performs both static analysis (SAST) and software composition analysis (SCA) testing.

  • Software Risk Manager

    Software Risk Manager is a complete application security posture management (ASPM) solution.

Code Sight Standard Edition

If you do not already use Coverity, Black Duck SCA, or one of the other Black Duck Software, Inc. solutions listed above, the Code Sight Standard Edition might be a good place for you to start. The Code Sight Standard Edition is set up so you can quickly register yourself, download Rapid Scan analysis engines, and begin scanning source code.