From 89c6fee854cf0a12481e899fdcee233a9c2117e9 Mon Sep 17 00:00:00 2001 From: Sarah Mount Date: Mon, 9 Sep 2024 15:38:14 +0100 Subject: [PATCH] Plugin reviews should check compatibility with our hosting infra --- src/govpress-unit/plugin-reviews.md | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/src/govpress-unit/plugin-reviews.md b/src/govpress-unit/plugin-reviews.md index eff4063ee..60b0c9a7d 100644 --- a/src/govpress-unit/plugin-reviews.md +++ b/src/govpress-unit/plugin-reviews.md @@ -14,9 +14,10 @@ below): 2. Add a card to the Trello board 3. Check the plugin for issues using [pluginscan](https://git.govpress.com/dxw/pluginscan) -4. Write up an inspection report in advisories.dxw.com. If the plugin does not +4. Check for incompatibilities with our [hosting platform](https://github.com/dxw/govpress-technical-docs/blob/main/software-development/add-a-new-plugin.md) +5. Write up an inspection report in advisories.dxw.com. If the plugin does not appear to be vulnerable, this can be published immediately -5. If the plugin appears to be vulnerable, spend a short amount of time +6. If the plugin appears to be vulnerable, spend a short amount of time attempting to prove it. If we aren't able to prove the vulnerability then we should publish the