I merged your post related to third party apps into this thread.
How does Bosch Rexroth ensure apps used with ctrlX AUTOMATION are safe and secure?
Rexroth Apps
Partner Apps
Any third party apps
Do we screen them prior to allowing them on our App store?
Do we make any app creator certify to a security standard?
In extension to our own Security mechanisms the Snap technology is a main fundament. Every app is containerized and bundle all related dependencies in one standalone package. This includes also the definition of permissions.
See e.g.
Ubunto Core Documentation
blog entry at snapcraft.io
Related to third party app Security
We support security by design an an inherent block for our own apps (as stated above). Of course we want to make sure, that also also our partners deliver security-proven apps by using our security features, e.g. User Authorization and Authentification, Reverse Proxy etc. This is one essential part of our quality gates for third-party apps. As part of the partner program, we support our partners in reaching this goal.
... View more