Philipp Ottlinger created RAT-558:
-------------------------------------

             Summary: Explain XXE-warnings in RAT code and add security 
guidelines to webpage and RAT repo
                 Key: RAT-558
                 URL: https://issues.apache.org/jira/browse/RAT-558
             Project: Apache RAT
          Issue Type: Improvement
    Affects Versions: 0.18
            Reporter: Philipp Ottlinger


Following the current XXE-warnings in GitHub it makes sense to document these 
for RAT's users:
* add SECURITY.md - example: 
https://github.com/kubernetes/examples/blob/master/SECURITY.md
* add security information to webpage and explain why we disable certain 
warnings in SonarCloud's static XXE detection (XXE_DOCUMENT)



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to