Snyk Code

Snyk output file (snyk code test --sarif > snyk.json) can be imported in JSON SARIF format.

Sample Scan Data

Sample Snyk Code scans can be found here.

Default Deduplication Hashcode Fields

By default, DefectDojo identifies duplicate Findings using these hashcode fields:

  • vuln id from tool
  • file path