1. SonarLint
SonarLint是一个代码质量检测插件,可以帮助我们检测出代码中的坏味道
data:image/s3,"s3://crabby-images/662b9/662b915f6fa88e154b99e7dc6925afdae4f81369" alt="图片"
下载与安装
data:image/s3,"s3://crabby-images/0a45f/0a45f85f7e6344dea39829eea005e1dfdc98824d" alt="图片"
在需要检测的单个文件或者单个项目上右键 –> Analyze –> Analyze with SonarLint或者选中文件或目录,点击菜单栏 Analyze –> Analyze with SonarLint
data:image/s3,"s3://crabby-images/d9199/d91995e428e00ace2cbc44fd600699bdced04438" alt="图片"
我们还可以禁用某些规则
data:image/s3,"s3://crabby-images/139e7/139e7db23dd33d433b89c406052e08a7de471243" alt="图片"
如果需要同步自定义的规则时,可以绑定到SonarQube
data:image/s3,"s3://crabby-images/eff1b/eff1bdbe47238f537f334b190b54d8886b699df2" alt="图片"
data:image/s3,"s3://crabby-images/aa1ba/aa1ba2cb920d5dd61f799b17c766c360f8d6448b" alt="图片"
data:image/s3,"s3://crabby-images/3c4a6/3c4a6406eda530dab8e833b9788527fb574a8543" alt="图片"
查看检测的结果
data:image/s3,"s3://crabby-images/01279/012790f68981b003e77ecfaf37e80cebb771e886" alt="图片"
对于代码中的警告我们不能视而不见
data:image/s3,"s3://crabby-images/6eb24/6eb246c99bcd6220eee8cde4f2e148f03597cbf7" alt="图片"
有了代码质量检测工具以后,在一定程度上可以保证代码的质量对于每一个问题,SonarLint都给出了示例,还有相应的解决方案,教我们怎么修改,极大的方便了我们的开发比如,对于日期类型尽量用LocalDate、LocalTime、LocalDateTime,还有重复代码、潜在的空指针异常、循环嵌套等等问题有了代码规范与质量检测工具以后,很多东西就可以量化了,比如bug率、代码重复率等,还可以自定义各种指标,方便管理人员查看为此,我们需要一个平台来记录每次检测分析的结果,这样就可以进行分析和统计,并且可以直观的看到这一切于是,SonarQube 闪亮登场!
2. SonarQube
SonarQube是一个开源的代码质量管理平台
data:image/s3,"s3://crabby-images/46feb/46feb367570768ba62dd555aedbbb4b965454794" alt="图片"
data:image/s3,"s3://crabby-images/5cd13/5cd13fc8092ead200a29aedd260d09748ae25c37" alt="图片"
data:image/s3,"s3://crabby-images/57c1c/57c1c62a27f483f2655cfb6198f2a90f4586cf1e" alt="图片"
data:image/s3,"s3://crabby-images/ddb53/ddb53a8fa2c2ff36773589503797b90284695b6a" alt="图片"
解压&本地启动https://docs.sonarqube.org/latest/setup/get-started-2-minutes/
unzip sonarqube-7.7.zip
cd sonarqube-7.7
bin/[OS]/sonar.sh consol
data:image/s3,"s3://crabby-images/d7421/d742167fea59e5939023215cd5368a63f333488f" alt="图片"
启动成功后,访问 http://localhost:9000 用管理员账号(admin/admin)登录
data:image/s3,"s3://crabby-images/fedb2/fedb242672832603c9d59495b98be263154bbf82" alt="图片"
接下来,为了把检测的结果传到服务器,我们需要配置一个Scannerhttps://docs.sonarqube.org/display/SCAN/Analyzing+with+SonarQube+Scanner+for+Maven这里我在项目中添加 sonar-maven-plugin 插件
<build>
<plugins>
<plugin>
<groupId>org.sonarsource.scanner.maven</groupId>
<artifactId>sonar-maven-plugin</artifactId>
<version>3.6.0.1398</version>
</plugin>
</plugins>
</build>
命令行执行:mvn clean compile sonar:sonar成功后,可以在控制台中看到这样的输出
data:image/s3,"s3://crabby-images/1be15/1be15fe228780baf396dfbc16b6519ee1480fb44" alt="图片"
再次刷新 http://localhost:9000/ 会看到跟刚才不一样了
data:image/s3,"s3://crabby-images/dd1f2/dd1f20aa94a253b8c4ac1d5f7bfb81c236c607fc" alt="图片"
data:image/s3,"s3://crabby-images/2fd19/2fd199cfcd33ac55a7090ccbd0db3fe7b8447b16" alt="图片"
data:image/s3,"s3://crabby-images/b6199/b61990bdcb2daf164eb470d619c23fbddcb34cc0" alt="图片"
以上只是本地演示,在正式环境中这些数据当然要保存到数据库中,具体安装就不演示了,下面是文档https://docs.sonarqube.org/latest/setup/install-server/
3. Alibaba代码规约插件
阿里代码规范,相信大家都不陌生
data:image/s3,"s3://crabby-images/f3e99/f3e99bcf2f8bca176ad7005c900afc2b0afa291e" alt="图片"
data:image/s3,"s3://crabby-images/b45f2/b45f2dd2e7fa066f23ed9c9177a47135ce7312bd" alt="图片"
data:image/s3,"s3://crabby-images/13097/13097a94c7961a3bc51d408ebd58b6444fe037c7" alt="图片"