Category: Software Development
What the TanStack npm compromise tells us about software trust.
Runtime Verification Inc applies formal methods to improve the safety, reliability, and correctness of computing systems for aerospace, automotive, and the blockchain.
On The Limitations of Audit Competitions
Audit competitions have surged in popularity recently, with numerous platforms vying to connect projects with independent security researchers. The premise is straightforward: organizations offer a cash prize to attract auditors eager to scrutinize their code for vulnerabilities. While cost-effective, the evolving ecosystem necessitates a closer examination of the drawbacks inherent in relying solely on audit contests.
GitHub Guidelines For Collaborative Coding
This blog is about Runtime Verification's guidelines for collaborative coding, which are designed to help teams manage their software development process and avoid introducing unneeded friction. It covers topics such as prioritizing work, opening PRs, reviewing PRs, addressing changes, and closing remarks. It also discusses the importance of trust and the use of CI in aiding collaborative coding.




