All Apps and Add-ons

Obfuscating python code while giving it for certification

SudarshanS
Explorer

Hi All,

I have created an add-on and would like to certify it , I have written python code and kept it inside the bin directory. I read in the document that the Splunk team looks into the source code to check any security vulnerabilities. Is it possible to certify the add-on by just packaging obfuscated .pyc file and not the source cod ?. just wanted to know in details.

Thanks,
Sudarshan

0 Karma

gjanders
SplunkTrust
SplunkTrust

The certification program is now over and replaced by the app inspect badge.

While there is a CLI and REST version of the AppInspect system at the time for writing (15th September 2018) the REST API is a newer version and will provide a valid value as to whether your add-on will receive the App Inspect badge or not.

More details on the App Inspect API including Postman examples here

I found the PostMan version very easy to use.

Although that said, I'm unsure how many Splunk users would be comfortable with installing a binary with the pyc file and not the source code...

0 Karma
Get Updates on the Splunk Community!

Join Us for Splunk University and Get Your Bootcamp Game On!

If you know, you know! Splunk University is the vibe this summer so register today for bootcamps galore ...

.conf24 | Learning Tracks for Security, Observability, Platform, and Developers!

.conf24 is taking place at The Venetian in Las Vegas from June 11 - 14. Continue reading to learn about the ...

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...