I have just released to open source a project that runs static code
analysis against XQuery code.  It is a plugin for the SonarQube (
http://www.sonarqube.org/) code quality management tool.  There are a few
security/convention checks already created (most inspired by Michael
Blakeley) and it is very easy to add more.

You can check it out here:
https://github.com/malteseduck/sonar-xquery-plugin

It is not perfect, but it is a place to start and has been useful for our
organization.  There is a lot of potential for more types of checks for
things like security and localizability.  I am of course open to any
suggestions and contributions you feel inclined to give.  Thanks.

Chris Cieslinski
_______________________________________________
General mailing list
[email protected]
http://developer.marklogic.com/mailman/listinfo/general

Reply via email to