Skip to content

SDLC security tool PoliCheck #3514

@corinagum

Description

@corinagum

[INFO] adding needs-team-attention label to discuss punting other R11 issues in favor of this one.

I haven't delved into the scope of the work I need to do here, but here are William's notes:

One of the SDLC security tool "PoliCheck"[url redacted] flagged the language we used in our code comments are not appropriate. As is responsible for docs, could you please look at the PoliCheck artifact in this pipeline, download the XML file, and fix those issues? As we operate largely outside of Azure DevOps, this is manual work and we need to look at the XML files from time to time. Maybe during our release cycle, or slightly more frequently, as those PoliCheck issues are considered security issues.

Metadata

Metadata

Assignees

Labels

Bot ServicesRequired for internal Azure reporting. Do not delete. Do not change color.area-docsDocumentation requiredbugIndicates an unexpected problem or an unintended behavior.customer-replied-toRequired for internal reporting. Do not delete.customer-reportedRequired for internal Azure reporting. Do not delete.p0Must Fix. Release-blocker

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions