How security developments are done in eOS #357
-
Just a sincere question about security topics in eOS' CI/CD cycle. |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment
-
As far as I am aware there are no static analysis tools for Vala language (what the vast majority of elementary apps are written in) so there is no support for things like SonarQube etc. I am not currently familiar with processes for desktop app development but I can say that for most of the web apps they are not hooked up to similar tools. Dependabot runs for npm updates. |
Beta Was this translation helpful? Give feedback.
As far as I am aware there are no static analysis tools for Vala language (what the vast majority of elementary apps are written in) so there is no support for things like SonarQube etc.
I am not currently familiar with processes for desktop app development but I can say that for most of the web apps they are not hooked up to similar tools. Dependabot runs for npm updates.