Skip to content

Commit bb36244

Browse files
committed
Applied comments
1 parent 8998455 commit bb36244

1 file changed

Lines changed: 2 additions & 4 deletions

File tree

content/en/docs/marketplace/upload-content/governance-process.md

Lines changed: 2 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -17,15 +17,13 @@ Mendix strongly recommends performing the following checks before you submit you
1717

1818
Mendix checks the following:
1919

20-
* The licenses used in the uploaded *.mpk* files, using the [Fossology](https://fossology.osuosl.org/repo/) tool .
20+
* The licenses used in the uploaded *.mpk* files, using QSM.
2121
There should be no use of GPL, LGPL, or MPL licenses.
2222
For more details, refer to [Open-Source Software Licenses](/appstore/submit-content/#license).
23-
* For third-party vulnerabilities, using QSM.
23+
* Any third-party vulnerabilities, using QSM.
2424
Every new public component and every new version of a component packaged as an MPK file is automatically scanned by QSM.
2525
If no vulnerabilities are detected, the component is uploaded automatically.
2626
If vulnerabilities are identified, the upload is rejected, and the component remains in **My Drafts** with a **Declined** status. Developers can open the context menu for the declined component and navigate to the **Scan Overview** page to review the detected vulnerabilities.
27-
* That the logo is related to the component's functionality.
28-
* That the screenshots are related to the configuration required to use the component in the end-user's app.
2927

3028
It may sometimes take a few iterations for a component to be approved, depending on the issues identified. To avoid a high number of necessary iterations, make sure you have followed the [Guidelines for Content Creators](/appstore/guidelines-content-creators/) and have performed the checks above before you submit a component for approval.
3129

0 commit comments

Comments
 (0)