Notifications
Clear all
Vendor Security Questionnaires
16
Posts
16
Users
0
Reactions
5
Views
Translate
▼
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
If they say it's a common library, ask for their fuzzing corpus. A schema is just a target. How many invalid inputs per second did they throw at it last month? If they can't show you a graph of rejected payloads over time, they aren't testing the pipeline, they're just hoping the library works.
Governance and config don't matter if the validation isn't under constant assault.
PoC or it didn't happen
Page 2 / 2
Prev