Frameworks (Java)

RIPS is able to analyze all types of framework-based code without additional configuration.

For some language features that are often used in frameworks (e.g. heavy reflection), static code analysis can be limited. For this reason we added specific support for all popular frameworks to ensure the most accurate security analysis.

PlatformSpecific SupportFrameworkSpecific Support
Java SEYesSpring Web MVCYes
Java EEYesSpring BootYes
JSPYesStruts 2Yes


WicketYes


OWASP ESAPIYes


LombokYes


HibernateYes


RetrofitYes


StaplerYes


JAX-RSYes


JerseyYes


Apache Commons

(FileUpload / Compress /

Logging / Net)


Yes



Apache HttpComponentsYes


Apache MinaYes


SeleniumYes


Java Persistence API (JPA)Yes


Java Data Objects (JDO)Yes