All Apps and Add-ons

Obfuscating python code while giving it for certification

SudarshanS
Explorer

Hi All,

I have created an add-on and would like to certify it , I have written python code and kept it inside the bin directory. I read in the document that the Splunk team looks into the source code to check any security vulnerabilities. Is it possible to certify the add-on by just packaging obfuscated .pyc file and not the source cod ?. just wanted to know in details.

Thanks,
Sudarshan

0 Karma

gjanders
SplunkTrust
SplunkTrust

The certification program is now over and replaced by the app inspect badge.

While there is a CLI and REST version of the AppInspect system at the time for writing (15th September 2018) the REST API is a newer version and will provide a valid value as to whether your add-on will receive the App Inspect badge or not.

More details on the App Inspect API including Postman examples here

I found the PostMan version very easy to use.

Although that said, I'm unsure how many Splunk users would be comfortable with installing a binary with the pyc file and not the source code...

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...