Skip to content

Add security scan status indicators in the plugins details page#286

Merged
Xpirix merged 3 commits intoqgis:masterfrom
Xpirix:security_scan_visibility
Apr 17, 2026
Merged

Add security scan status indicators in the plugins details page#286
Xpirix merged 3 commits intoqgis:masterfrom
Xpirix:security_scan_visibility

Conversation

@Xpirix
Copy link
Copy Markdown
Collaborator

@Xpirix Xpirix commented Mar 31, 2026

Closes #267

Cc @Gustry

image image

@Xpirix Xpirix requested review from timlinux April 7, 2026 12:35
@timlinux
Copy link
Copy Markdown
Member

timlinux commented Apr 7, 2026

This is a great idea. @Xpirix can you retrospectively run this on all plugins already on the system too?

@Xpirix
Copy link
Copy Markdown
Collaborator Author

Xpirix commented Apr 8, 2026

This is a great idea. @Xpirix can you retrospectively run this on all plugins already on the system too?

Sure @timlinux , I have added a command that we can run on the server to run a security scan on the latest version of each plugin if a scan result does not already exist.

@timlinux
Copy link
Copy Markdown
Member

LGTM thanks

@timlinux
Copy link
Copy Markdown
Member

We need to surface the security check in the QGIS desktop plugin manager. We should be carefult that we do not create a false sense of security for the user, passing the checks does not imply the plugin is fully secure, just less less insecure.

@Xpirix Xpirix merged commit fba4d77 into qgis:master Apr 17, 2026
2 checks passed
@Xpirix Xpirix deleted the security_scan_visibility branch April 17, 2026 14:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Visibility of the security tab

2 participants