Security

Does SplunkBase Vet apps for Security issues before publishing?

khavildar
Explorer

This is a generic question and my apologies if it has already been published somewhere, but I could not glean from my initial google searches.

Given the influx of supply chain attacks through code, am wondering if Splunkbase reviews sourcecode for malicious code before publishing here?

1 Solution

bec
Explorer

If I read this right, according to the approval criteria (https://docs.splunk.com/Documentation/Splunkbase/splunkbase/Splunkbase/Approvalcriteria) it says that "The Splunkbase team evaluates your submitted content to ensure it meets the following..." One being a "check for malware/viruses" which is described as "run scanner software to check for viruses and malware." So though there isn't an abundance of details, it looks like the answer is yes.

View solution in original post

0 Karma

bec
Explorer

If I read this right, according to the approval criteria (https://docs.splunk.com/Documentation/Splunkbase/splunkbase/Splunkbase/Approvalcriteria) it says that "The Splunkbase team evaluates your submitted content to ensure it meets the following..." One being a "check for malware/viruses" which is described as "run scanner software to check for viruses and malware." So though there isn't an abundance of details, it looks like the answer is yes.

0 Karma
Get Updates on the Splunk Community!

Take Your Breath Away with Splunk Risk-Based Alerting (RBA)

WATCH NOW!The Splunk Guide to Risk-Based Alerting is here to empower your SOC like never before. Join Haylee ...

SignalFlow: What? Why? How?

What is SignalFlow? Splunk Observability Cloud’s analytics engine, SignalFlow, opens up a world of in-depth ...

Federated Search for Amazon S3 | Key Use Cases to Streamline Compliance Workflows

Modern business operations are supported by data compliance. As regulations evolve, organizations must ...