All Apps and Add-ons

Obfuscating python code while giving it for certification

SudarshanS
Explorer

Hi All,

I have created an add-on and would like to certify it , I have written python code and kept it inside the bin directory. I read in the document that the Splunk team looks into the source code to check any security vulnerabilities. Is it possible to certify the add-on by just packaging obfuscated .pyc file and not the source cod ?. just wanted to know in details.

Thanks,
Sudarshan

0 Karma

gjanders
SplunkTrust
SplunkTrust

The certification program is now over and replaced by the app inspect badge.

While there is a CLI and REST version of the AppInspect system at the time for writing (15th September 2018) the REST API is a newer version and will provide a valid value as to whether your add-on will receive the App Inspect badge or not.

More details on the App Inspect API including Postman examples here

I found the PostMan version very easy to use.

Although that said, I'm unsure how many Splunk users would be comfortable with installing a binary with the pyc file and not the source code...

0 Karma
Get Updates on the Splunk Community!

Exciting News: The AppDynamics Community Joins Splunk!

Hello Splunkers,   I’d like to introduce myself—I’m Ryan, the former AppDynamics Community Manager, and I’m ...

The All New Performance Insights for Splunk

Splunk gives you amazing tools to analyze system data and make business-critical decisions, react to issues, ...

Good Sourcetype Naming

When it comes to getting data in, one of the earliest decisions made is what to use as a sourcetype. Often, ...