30m, Kevin Sandi fabian rouzautand Pawel Pawlak We will share the improvement mechanism we developed as PoC for ONAP to automatically improve the committed code quality before its merge. |
It is extremaly important to define and assure as early as possible quality gates as well as automated process for checking if the submitted code can be merged. It saves everyones time!
Live interactive demo session
Focus on code quality significantly reduces threats. The cost of fixing problem after merge has a cost (20-50% increase). Lack of SonarCloud automated new code scan was explained and demonstrated with CPS project. As a next step SO project will participate in the PoC. As an ultimate goal all ONAP projects would be covered by security by design approach.