Security

Does SplunkBase Vet apps for Security issues before publishing?

khavildar
Explorer

This is a generic question and my apologies if it has already been published somewhere, but I could not glean from my initial google searches.

Given the influx of supply chain attacks through code, am wondering if Splunkbase reviews sourcecode for malicious code before publishing here?

1 Solution

bec
Explorer

If I read this right, according to the approval criteria (https://docs.splunk.com/Documentation/Splunkbase/splunkbase/Splunkbase/Approvalcriteria) it says that "The Splunkbase team evaluates your submitted content to ensure it meets the following..." One being a "check for malware/viruses" which is described as "run scanner software to check for viruses and malware." So though there isn't an abundance of details, it looks like the answer is yes.

View solution in original post

0 Karma

bec
Explorer

If I read this right, according to the approval criteria (https://docs.splunk.com/Documentation/Splunkbase/splunkbase/Splunkbase/Approvalcriteria) it says that "The Splunkbase team evaluates your submitted content to ensure it meets the following..." One being a "check for malware/viruses" which is described as "run scanner software to check for viruses and malware." So though there isn't an abundance of details, it looks like the answer is yes.

0 Karma
Get Updates on the Splunk Community!

Thanks for the Memories! Splunk University, .conf24, and Community Connections

Thank you to everyone in the Splunk Community who joined us for .conf24 – starting with Splunk University and ...

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

 (view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...