Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Security] Add security scanners to CI pipeline #7503

Closed
10 tasks done
JonasCir opened this issue Dec 13, 2021 · 0 comments
Closed
10 tasks done

[Security] Add security scanners to CI pipeline #7503

JonasCir opened this issue Dec 13, 2021 · 0 comments
Assignees
Labels
epic A high level ticket with subtickets for development (ticket type) technology Technical issues, e.g. synchronization, libraries, plugins, etc.

Comments

@JonasCir
Copy link
Contributor

JonasCir commented Dec 13, 2021

Situation Description & Motivation

log4shell was a close call and we need plan ahead for the next crisis. One step forward is to make more use of static security tools and dependency analysis. Catch well known security issues at compile time.

Use cases

High-Level Explanation

Timeline

Tasks

Alternatives

None really, this is the bare minimum we need to do.

Risks

Additional Information

@JonasCir JonasCir added the change A change of an existing feature (ticket type) label Dec 13, 2021
@vidi42 vidi42 added needs-refinement Refinement or further specification required technology Technical issues, e.g. synchronization, libraries, plugins, etc. labels Dec 15, 2021
@MartinWahnschaffe MartinWahnschaffe added epic A high level ticket with subtickets for development (ticket type) and removed change A change of an existing feature (ticket type) labels Dec 17, 2021
@MartinWahnschaffe MartinWahnschaffe removed the needs-refinement Refinement or further specification required label Dec 17, 2021
@JonasCir JonasCir removed their assignment Mar 13, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
epic A high level ticket with subtickets for development (ticket type) technology Technical issues, e.g. synchronization, libraries, plugins, etc.
Projects
None yet
Development

No branches or pull requests

3 participants