Uploaded image for project: 'Puppet'
  1. Puppet
  2. PUP-7519

Enable rubocop security cop scan on ruby projects

    Details

    • Type: Task
    • Status: Closed
    • Priority: Normal
    • Resolution: Duplicate
    • Affects Version/s: None
    • Fix Version/s: PUP 6.0.0
    • Component/s: None
    • Labels:
      None
    • Template:
    • Team:
      Security
    • Story Points:
      2
    • Sprint:
      Hopper/Triage, Perf&Sec 2017-05-31, Perf&Sec 2017-06-14
    • QA Risk Assessment:
      Needs Assessment

      Description

      Rubocop is a scanner for checking some violations including some security relevant.
      Although a number of repo's were intended to undergo rubocop scans as part of regular CI processes, but the tool's configuration file have not been kept uptodate. As a result the scans were getting skipped.

      This ticket captures work needed to revive scans for some high risk projects. Tentatively rubocop scans would be enabled on following repo's:

      • puppet
      • marionette-collective

        Attachments

          Issue Links

            Activity

              jsd-sla-details-panel

                People

                • Assignee:
                  jayant.sane Jayant Sane
                  Reporter:
                  jayant.sane Jayant Sane
                • Votes:
                  0 Vote for this issue
                  Watchers:
                  1 Start watching this issue

                  Dates

                  • Created:
                    Updated:
                    Resolved: