kotlin support ?
we are currently using fortify for our security scans on java language, but more and more we are migrating to kotlin language. Do you intend to support it?
Good day lepapareil
Kotlin is currently not supported.
The best workaround option is to actually compile Kotlin to JVM class output and scan the bytecode with SCA
Keep in mind if you 'scan' Kotlin app bytecode you will be finding Java specific vulns because SCA does not have specific rules for Kotlin.
Understanding, there is no direct correlation between Java-Byte Code and Kotlin-Byte Code; SCA will look for vulnerabilities more akin to 'Java'
IF there is something "Kotlin specific" in the Kotlin App code, SCA is likely to miss it.
You can 'develop' your own customer SCA Kotlin rules should you have the need.
Product Management is tracking demand for Kotlin and may adjust the 'roadmap' to include Kotlin, however, currently there are no plans to support Kotlin
however, currently there are no plans to support Kotlin
Just wondering if this information is still up to date? Kotlin is very quickly becoming the de facto language of Android development (and arguably already has).
I'm unable to locate any definitive answer regarding when support for Kotlin will be added. There was an update from development on 2/13/2019 where it is being considered for a future release.
If you have not already done so, please open a ticket with support so your company can be added to the existing enhancement request.