Hidden bad code in plugin

This topic was automatically closed 365 days after the last reply. New replies are no longer allowed.
Hace 2 años
Hi All,

In term of security, is it possible that any plugin that we buy in marketplace possibly contain a bad code to collect our data and send to third party.

If so, any prevention for this kind of thing?

Thanks,
Chandara
Hace 2 años
MK_Mick wrote:
Hi All,

In term of security, is it possible that any plugin that we buy in marketplace possibly contain a bad code to collect our data and send to third party.

If so, any prevention for this kind of thing?

Thanks,
Chandara


possibility is very low. any organization will not ruined their reputation. but if any confusion you can find out by inspecting network call.
Hace 2 años
Or for more deep inspacting Fiddler is the parfect tool to check network call. https://www.telerik.com/fiddler
Hace 2 años
For a plugin to be accepted by the Marketplace, the vendor must submit their source code as per the guidelines:
https://www.nopcommerce.com/en/submitting-plugins-to-nopcommerce-marketplace.

I don't know how they "analyze" for security issues.  Maybe the team can provide more information.
Hace 2 años
rk.menon wrote:
Or for more deep inspacting Fiddler is the parfect tool to check network call. https://www.telerik.com/fiddler


Thank you, RK.

Thanks,
Mick
Hace 2 años
New York wrote:
For a plugin to be accepted by the Marketplace, the vendor must submit their source code as per the guidelines:
https://www.nopcommerce.com/en/submitting-plugins-to-nopcommerce-marketplace.

I don't know how they "analyze" for security issues.  Maybe the team can provide more information.


Thank you, New Work.
Have read guideline and no more doubt on this one.

Thanks,
Mick
This topic was automatically closed 365 days after the last reply. New replies are no longer allowed.