Hidden bad code in plugin

This topic was automatically closed 365 days after the last reply. New replies are no longer allowed.
2 years ago
Hi All,

In term of security, is it possible that any plugin that we buy in marketplace possibly contain a bad code to collect our data and send to third party.

If so, any prevention for this kind of thing?

Thanks,
Chandara
2 years ago
MK_Mick wrote:
Hi All,

In term of security, is it possible that any plugin that we buy in marketplace possibly contain a bad code to collect our data and send to third party.

If so, any prevention for this kind of thing?

Thanks,
Chandara


possibility is very low. any organization will not ruined their reputation. but if any confusion you can find out by inspecting network call.
2 years ago
Or for more deep inspacting Fiddler is the parfect tool to check network call. https://www.telerik.com/fiddler
2 years ago
For a plugin to be accepted by the Marketplace, the vendor must submit their source code as per the guidelines:
https://www.nopcommerce.com/en/submitting-plugins-to-nopcommerce-marketplace.

I don't know how they "analyze" for security issues.  Maybe the team can provide more information.
2 years ago
rk.menon wrote:
Or for more deep inspacting Fiddler is the parfect tool to check network call. https://www.telerik.com/fiddler


Thank you, RK.

Thanks,
Mick
2 years ago
New York wrote:
For a plugin to be accepted by the Marketplace, the vendor must submit their source code as per the guidelines:
https://www.nopcommerce.com/en/submitting-plugins-to-nopcommerce-marketplace.

I don't know how they "analyze" for security issues.  Maybe the team can provide more information.


Thank you, New Work.
Have read guideline and no more doubt on this one.

Thanks,
Mick
This topic was automatically closed 365 days after the last reply. New replies are no longer allowed.