Was there supposed to be a hangout today? Werner
On Mon, Sep 12, 2016 at 8:29 PM, Philipp Ottlinger (JIRA) <[email protected]> wrote: > Philipp Ottlinger created TAMAYA-177: > ---------------------------------------- > > Summary: Add security improved findbugs rules and OWASP > dependency checker to Tamaya build process > Key: TAMAYA-177 > URL: https://issues.apache.org/jira/browse/TAMAYA-177 > Project: Tamaya > Issue Type: Improvement > Components: Infrastructure > Affects Versions: 0.2-incubating > Reporter: Philipp Ottlinger > Assignee: Philipp Ottlinger > Fix For: 0.3-incubating > > > Since Tamaya is such a vital part of a running software it should not have > too many security problems, thus: > * enable security findbugs rules - https://find-sec-bugs.github.io > * add special build profile that checks for dependencies with known CVEs > (owasp dependency scanner) - https://github.com/jeremylong/DependencyCheck > to Tamaya main repo. > > > > -- > This message was sent by Atlassian JIRA > (v6.3.4#6332) >
