Dawnscanner is a source code scanner designed to review your ruby code for security issues.Dawnscanner is able to scan plain ruby scripts (e.g. command line applications) but all its features are unleashed when dealing with web applications source code. dawnscanner is able to scan major MVC (Model View Controller) frameworks.
quay.io/trickest/dawnscanner:2.0.0.rc4
Target directory-d
Force dawn to scan only for vulnerabilities affecting dependencies in Gemfile.lock--disable-code-style
Disable all code style checks--disable-owasp-top-10
Disable all Owasp Top 10 checks--disable-cve-bulletins
Disable all CVE security check--disable-code-quality
Disable all code quality checks--disable-owasp-ror-cheatsheet
Disable all Owasp Ruby on Rails cheatsheet checks