DefectDojo is an association between open source application vulnerabilities and security applications.
Allows you to manage your application security program, maintain product and application information, scan schedules, discover vulnerabilities, and forward findings found on security system crawlers.
While traceability and metrics are the ultimate goal, DefectDojo is a debugger at its core. The program allows traceability between multiple projects and test cycles and allows detailed reporting.
How does DefectDojo work?
DefectDojo is based on a model that allows absolute flexibility in testing needs.
- DefectDojo starts with a product type.
- Each product type can have one or more products.
- Each product may have one or more commitments.
- Each commitment can have a test.
- Each Test may have one or more findings
$ git clone https://github.com/DefectDojo/d-DefectDojo
$ cd django-DefectDojo
You will find a user guide for the program here.