open-telemetry / sig-security

Apache License 2.0
7 stars 9 forks source link

Propose recommendation around fuzzing #55

Open codeboten opened 1 month ago

codeboten commented 1 month ago

The CNCF has asked for a fuzzing audit of OpenTelemetry possibly using https://github.com/google/oss-fuzz. This issue is to capture the recommendation around fuzzing for the various SIGs in OTel

codeboten commented 1 month ago

Links to CNCF PR material about fuzzing CNCF projects:

Previous fuzzing audits:

jpkrohling commented 1 month ago

This is what we discussed during the SIG meeting: