The Qualys Web App Scanning Connector empowers DevOps teams to build application vulnerability scans into their existing CI/CD processes.
When the connector step starts, it launches a scan on the selected web application with the configured options. If you have configured any pass/fail criteria, the plugin evaluates the response against that.
We recommend using this plugin step during the Post-build phase of your job, after you deploy your web application.
- A valid Qualys subscription with the Web Application Scanning application activated.
- Access to Qualys Web Application Scanning application API endpoint from your build host.
For more information refer to the Qualys Web App Scanning Connector for Jenkins