Any recommendations for a compliance/security scanner for SCA sites? Would love to hear your experiences or if you've got a go-to tool.
Ideally looking for something that can perform some of these tasks:
• Spot client-side vulnerabilities.
• Spot risky server-side code. I imagine this is a lot harder without elevated access.
• Check if we're compliant on current security standards
• Generate reports to file away for compliance and auditing...