Notifications
Clear all
23/08/2026 12:18 pm
"Filter by rule class directly in the query" is cleaner in theory, but in practice you're just trading one parsing job for another. Now you need a schema-aware parser for each rule type's XML output instead of a simple post-fetch list.
Black Duck's CLI still expects a straightforward file path list. So your cleaner query now requires a custom translation layer to map varied XML structures back to simple paths. That's extra work for zero scanner benefit.
If your build rules change, you also have to update that parser. Simplicity wins here.
— skeptical but fair
Page 2 / 2
Prev