DZone
Thanks for visiting DZone today,
Edit Profile
  • Manage Email Subscriptions
  • How to Post to DZone
  • Article Submission Guidelines
Sign Out View Profile
  • Post an Article
  • Manage My Drafts
Over 2 million developers have joined DZone.
Log In / Join
Refcards Trend Reports Events Over 2 million developers have joined DZone. Join Today! Thanks for visiting DZone today,
Edit Profile Manage Email Subscriptions Moderation Admin Console How to Post to DZone Article Submission Guidelines
View Profile
Sign Out
Refcards
Trend Reports
Events
Zones
Culture and Methodologies Agile Career Development Methodologies Team Management
Data Engineering AI/ML Big Data Data Databases IoT
Software Design and Architecture Cloud Architecture Containers Integration Microservices Performance Security
Coding Frameworks Java JavaScript Languages Tools
Testing, Deployment, and Maintenance Deployment DevOps and CI/CD Maintenance Monitoring and Observability Testing, Tools, and Frameworks
Partner Zones AWS Cloud
by AWS Developer Relations
Culture and Methodologies
Agile Career Development Methodologies Team Management
Data Engineering
AI/ML Big Data Data Databases IoT
Software Design and Architecture
Cloud Architecture Containers Integration Microservices Performance Security
Coding
Frameworks Java JavaScript Languages Tools
Testing, Deployment, and Maintenance
Deployment DevOps and CI/CD Maintenance Monitoring and Observability Testing, Tools, and Frameworks
Partner Zones
AWS Cloud
by AWS Developer Relations
11 Monitoring and Observability Tools for 2023
Learn more
  1. DZone
  2. Testing, Deployment, and Maintenance
  3. Deployment
  4. Policy Governance Made Easy — Introducing the Nexus Notifier Plugin for Bitbucket

Policy Governance Made Easy — Introducing the Nexus Notifier Plugin for Bitbucket

Take a look at how this new plugin makes code governance easier and quicker for developers, and safer for enterprises.

Justin Young user avatar by
Justin Young
·
Sep. 20, 18 · News
Like (1)
Save
Tweet
Share
2.37K Views

Join the DZone community and get the full member experience.

Join For Free

The need for open source governance throughout the development lifecycle has never been greater. And yet, at the same time, the modern developer has never been under more pressure to move faster and release quickly — making adherence to open source policies harder than ever.

In fact, according to our 2018 DevSecOps Community survey , nearly half of all developers know that application governance is important, but don't have time to spend on it. We also saw that 77% of mature DevOps organizations have open source policies in place, with a 76% adherence rate. Conversely, only 58% of respondents without mature DevOps practices had a policy with a 54% adherence rate — revealing that not only is automated governance difficult to ignore, but that without automation, it may not happen at all.

That's exactly why we're excited to announce our Nexus Notifier Plugin for Jenkins now has initial support for Bitbucket Code Insights. The integration, built by our community team, brings the automated policy engine of Nexus Lifecycle directly to Bitbucket developers who can use policy results to drive Pull Request discussion. For Bitbucket Server users who also use Lifecycle and Jenkins, the integration makes it easy to push organizational policy evaluation results directly into Code Insights. This enables developers to immediately see how their chosen components line-up against their company's chosen policies.

Providing in-depth information at the pull-request level prevents hours of re-work and ultimately, gives developers more control over the components they're able to use — within the given policy. With all of the information available directly within Bitbucket, developers can make smart decisions quickly, and immediately rectify any policy violations that come up.

Within the Bitbucket environment, when the build runs, developers can easily see code insights and immediately identify policy violations as severe, critical, or moderate.

From there, developers can drill down into the exact violations, via a Nexus Lifecycle dashboard, and make appropriate changes.

This integration allows more developers to get important information early, and act fast, to remediate potential issues. We're excited to work with Atlassian to share these capabilities and continue shifting the security and governance conversation left.

Nexus (standard) Open source dev pull request Open-source governance Insight (email client) Integration Jenkins (software)

Published at DZone with permission of Justin Young. See the original article here.

Opinions expressed by DZone contributors are their own.

Popular on DZone

  • Unlock the Power of Terragrunt’s Hierarchy
  • How To Best Use Java Records as DTOs in Spring Boot 3
  • Custom Validators in Quarkus
  • 5 Steps for Getting Started in Deep Learning

Comments

Partner Resources

X

ABOUT US

  • About DZone
  • Send feedback
  • Careers
  • Sitemap

ADVERTISE

  • Advertise with DZone

CONTRIBUTE ON DZONE

  • Article Submission Guidelines
  • Become a Contributor
  • Visit the Writers' Zone

LEGAL

  • Terms of Service
  • Privacy Policy

CONTACT US

  • 600 Park Offices Drive
  • Suite 300
  • Durham, NC 27709
  • support@dzone.com
  • +1 (919) 678-0300

Let's be friends: