BlackDuck J-unit style report
Back in a day I stumbled upon this article: https://uko.codes/npm-audit-jenkins-warnings-next-generation-custom-groovy-parser
I wanted to adapt this approach to display result from blackduck scan as well.
What are the benefits:
- See vulnerabilities trend in Jenkins
- Set Quality gate that would fail job when there are some vulnerabilities
- Send slack notifications
- Navigate and see each individual CVE
- Have one Jenkins folder with all Blackduck projects status