2022-01-11 - ONAP: Code quality demo

Topic Leader(s)



  • @rouzaut

  • @Pawel Pawlak

  • @Kevin Sandi

Topic Description

30m, @Kevin Sandi  @rouzautand @Pawel Pawlak

We will share the improvement mechanism we developed as PoC for ONAP to automatically improve the committed code quality before its merge. 

Topic Overview

It is extremaly important to define and assure as early as possible quality gates as well as automated process for checking if the submitted code can be merged. It saves everyones time!  

Slides & Recording

Live interactive demo session

Agenda

  • Problem description

  • Solution

  • Demo

  • Status and focus for ONAP

Minutes

Focus on code quality significantly reduces threats. The cost of fixing problem after merge has a cost (20-50% increase). Lack of SonarCloud automated new code scan was explained and demonstrated with CPS project. As a next step SO project will participate in the PoC. As an ultimate goal all ONAP projects would be covered by security by design approach.

Action Items

work with PTLs community on finalization of quality gates for a new code merge to be followed by the TSC presentation for an implementation approval. 
provide feedback to Christophe on duplicated lines (new code vs. existing code) @rouzaut