https://wiki.mozilla.org/WebAppSec/Secure_Coding_Guidelines
The purpose of this page is to establish a concise and consistent approach to secure application development of Mozilla web applications and web services. The information provided here will be focused towards web based applications; however, the concepts can be universally applied to applications to implement sound security controls and design.
It’s a useful tool, combined with others to automate web application security tests to a decent, fairly comprehensive baseline. It was built to be part of a Continuous Integration process by the Mozilla WebQA team, but could easily be adopted by other teams and used in a similar way – it ouputs a JUnit style XML report that can be consumed by other tools such as Jenkins.
More info:
https://github.com/mozilla/
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjzElZtVe_NCwBl9OM6cJ0WM27nroEE_Oe3w7avf31baYQeVHBbr7YbJExGZFb0Sw7dFcKIIQeWk1f8YY_qsfcLvvQK_2sGSLrG08neJsLK-QynP2ytSWPEqKe5xsTpc7AneME4vrYT2Ic/s1600/download-button+(1).png)
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjzElZtVe_NCwBl9OM6cJ0WM27nroEE_Oe3w7avf31baYQeVHBbr7YbJExGZFb0Sw7dFcKIIQeWk1f8YY_qsfcLvvQK_2sGSLrG08neJsLK-QynP2ytSWPEqKe5xsTpc7AneME4vrYT2Ic/s1600/download-button+(1).png)
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjzElZtVe_NCwBl9OM6cJ0WM27nroEE_Oe3w7avf31baYQeVHBbr7YbJExGZFb0Sw7dFcKIIQeWk1f8YY_qsfcLvvQK_2sGSLrG08neJsLK-QynP2ytSWPEqKe5xsTpc7AneME4vrYT2Ic/s1600/download-button+(1).png)