WebStorm Integration

Secure your JavaScript or TypeScript workflow directly within the WebStorm integrated development environment (IDE). With the Sonatype WebStorm integration, get real-time, in-IDE insights into component risk, license issues, and policy violations as you code.

Secure Your Code Without Leaving WebStorm

With the Sonatype WebStorm integration, developers using the WebStorm IDE can detect and remediate open source risk directly within their development environment. The plugin scans JavaScript and other supported project types in real-time, surfaces component-level insights, and provides policy guidance tailored to your organization — all powered by Sonatype Lifecycle.

Whether you are working with WebStorm JavaScript projects or debugging JavaScript code, Sonatype ensures you are aware of potential security and licensing issues before code ever leaves your IDE.

WebStorm Integration Features

Component Intelligence in Real Time

Get instant feedback on open source components, including license risk, known vulnerabilities, and Sonatype intelligence.

Inline Policy Warnings

See violations directly in your editor so you can take action before issues enter your builds or CI pipelines.

Deep Language Support

Supports JavaScript, TypeScript, and more within WebStorm, whether you’re building modern web apps or backend services.

Sonatype Lifecycle Integration

Tap into the full power of Sonatype Lifecycle’s policy engine and security data without ever leaving the IDE.

Simplified Remediation

Quickly find safer or compliant component versions with automated suggestions and links to more secure alternatives.

IDE-Native Experience

Built to feel like a native part of the WebStorm IDE, the integration blends seamlessly with your coding workflow for uninterrupted productivity.

Integration Resources

Installing and using the WebStorm plugin

See Full Documentation

Javascript scanning now supported in JetBrains IDEs

See Blog Post

5 benefits of integrating Sonatype with your IDE

See Full Documentation

FAQs

What languages does the Sonatype WebStorm integration support?

JavaScript, TypeScript, and other supported languages in the WebStorm IDE.

Does the plugin work with Node.js projects?

Yes, Sonatype detects open source components in Node.js and other JavaScript-based projects.

Is Sonatype’s WebStorm integration compatible with other JetBrains IDEs?

Yes, the plugin supports multiple JetBrains IDEs, including IntelliJ IDEA and PyCharm.