Snyk Documentation

How it works

Note: For Broker see this How it works instead.

Use the Snyk plugin with your Eclipse projects to test your manifest files for vulnerabilities and license issues as you work.

  1. The user installs the plugin within the local Eclipse installation via the Eclipse Marketplace.
  2. The user authenticates Snyk directly from within Eclipse Preferences with a Snyk API token.
  3. When the user runs the plugin, Snyk analyzes all projects currently open, automatically detecting the manifest files based on package manager and language types to find direct and transitive dependencies and test your project against the Snyk vulnerability database for known vulnerabilities and license issues.
  4. The test results are displayed in Eclipse in the Snyk Results tab, summarizing the results, the path to the package with the issue, and recommended remediation when relevant.