TrackMe

Data tracking system for Splunk

Author TrackMe Limited, U.K.
Tags cloud
Version 2.4.18
Hash 6a018705d609f9810bf38a03456b15e3
AppInspect Request ID 4df46dd1-e212-4b5e-9ae8-31339c53ce76
Run Time 2026-09-23T17:28:55.748589
Execution Time 1241

Run parameters:

Field Value
AppInspect Version 4.3.1

Analyzers:

Name Version Is Latest
dynamic-checks 1.48.0 True
retire-js 1.3.0 True
static-checks 4.3.1 True

Compatibility totals:

Status Count
Successes
147
Failures
0
Future Failures
0
Errors
0
Warnings
17
Not Applicable
86
Skipped
1

[ Warning Summary ]

Warnings are non-blocking concerns. But they are strongly recommended to be fixed.

check_for_splunk_frontend_utility_components

Check for usage of utility components.
File: appserver/static/pages/LogsInspector.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/TopologyStudio.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditDataSampling.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAdaptiveDelay.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAiAdvisorScheduled.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditSvcUsage.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/RemoteAccountsOverview.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAiAssistant.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditTenantsOps.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAiAdvisor.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAiRoutines.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditTrackersPerf.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditSla.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/TenantHome.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/VirtualTenants.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 

check_for_splunk_js

Check that SplunkJS is being used.
File: appserver/static/pages/AuditDataSampling.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/TenantHome.js
388Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditSla.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/SupportDiag.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/LogsInspector.js
388Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditTenantsOps.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageS3Accounts.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/js/build/entry_page.js
228Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAiAdvisorScheduled.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageAiProviders.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/RestApiReference.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/VirtualTenants.js
388Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/license.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAiAdvisor.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageEmailAccounts.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/MaintenanceKdb.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ConfigurationGuardian.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditSvcUsage.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditKvstore.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/RemoteAccountsOverview.js
388Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/backuprestore.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageBankHolidays.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAiRoutines.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageSystemSettings.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageAiTenants.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAdaptiveDelay.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageRemoteAccounts.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/TopologyStudio.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAiAssistant.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/MaintenanceMode.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditTrackersPerf.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 

check_for_splunk_sui

Check that SUI is being used.
File: appserver/static/pages/TenantHome.js
1203Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/react-icons 
File: appserver/static/pages/TenantHome.js
1485Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/react-icons 
File: appserver/static/pages/TopologyStudio.js
587Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/react-icons 

check_for_splunk_js_header_and_footer_view

Checks that views are not importing splunkjs/mvc/headerview or splunkjs/mvc/footerrview. These are replaced by LayoutView in Splunk 6.5. LayoutView is not backwards compatible to Splunk 6.4 or earlier. Only use LayoutView if you are only targeting Splunk 6.5 or above.
File: appserver/static/pages/TenantHome.js
386As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/ManageRemoteAccounts.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/SupportDiag.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/ManageSystemSettings.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/ManageAiTenants.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/ManageBankHolidays.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/ManageEmailAccounts.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/MaintenanceMode.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/ManageAiProviders.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/js/build/entry_page.js
228As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/ManageS3Accounts.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/RestApiReference.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/ConfigurationGuardian.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/license.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/LogsInspector.js
386As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/AuditKvstore.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/MaintenanceKdb.js
2As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/RemoteAccountsOverview.js
386As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 
File: appserver/static/pages/VirtualTenants.js
386As of Splunk 6.5, this functionality is deprecated and should be removed in futureapp versions. Match: splunkjs/mvc/headerview. 

check_for_python_script_existence

Check for the existence of Python scripts, which must be upgraded to be cross-compatible with Python 2 and 3 for Splunk Enterprise 8.0.
11629 Python files found. Update these Python scripts to be cross-compatible with Python 2 and 3 for Splunk Enterprise 8.0. See https://docs.splunk.com/Documentation/Splunk/latest/Python3Migration/AboutMigration for more information. If you've finished your update, please disregard this message.

check_custom_conf_replication

Check that custom .conf files have matching conf_replication_include.<conf_file_name> values in server.conf, under the [shclustering] stanza, to ensure that configurations are synchronized across Search Head Clusters.
File: default/server.conf
App contains `default/splunk_create.conf` but conf_replication_include.splunk_create setting is not set in server.conf. 

check_collections_conf

Check if collections.conf exists.
File: default/collections.conf
App contains collections.conf. No action required. 

check_kos_are_accessible

Check that knowledge objects with access control restrictions defined in *.meta files are accessible to customers in Splunk Cloud.
File: metadata/default.meta
132The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
73The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
160The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
126The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
150The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
70The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
107The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
123The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
129The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
63The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
60The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
141The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
144The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
54The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
120The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
157The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
57The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
44The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
79The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
76The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
92The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
5The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
138The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
135The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
147The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 

check_python_sdk_version

Check that Splunk SDK for Python is up-to-date.
File: lib/splunk_sdk-3.0.1.dist-info/METADATA
3Splunk SDK for Python detected (version 3.0.1). No action required at this time. 

check_for_optional_operating_system_services

Check for features that are available on selected operating systems only.
File: lib/3rdparty/linux_with_deps_39/scipy/io/_netcdf.py
273Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/PIL/PdfParser.py
575Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_39/numpy/core/memmap.py
268Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/memmap.py
289Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_39/numpy/core/tests/test_multiarray.py
5737Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_multiarray.py
5865Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/PIL/ImageFile.py
342Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageFile.py
320Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_39/PIL/PdfParser.py
574Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/scipy/io/_netcdf.py
273Found usage of `mmap.mmap` which might not work on every operating system. 

check_for_possible_threading

Check for the use of threading, and multiprocesses. Threading or process must be used with discretion and not negatively affect the Splunk installation as a whole.
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
164The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/ccompiler.py
145The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/system_info.py
2974The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/system_info.py
355The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/tests/test_public_api.py
65The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
248The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/cffi/pkgconfig.py
37The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/scipy/sparse/linalg/_dsolve/tests/test_linsolve.py
719The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/f2py/tests/test_callback.py
155The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/core/tests/test_limited_api.py
32The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/linalg/tests/test_linalg.py
1958The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/JpegImagePlugin.py
471The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/scipy/_lib/tests/test__threadsafety.py
36The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
323The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/PIL/EpsImagePlugin.py
159The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/tests/test_scripts.py
40The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/command/config.py
126The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/cffi/pkgconfig.py
33The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: bin/trackmetrackerhealth.py
4511The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
182The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/lib/tests/test_format.py
914The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/cpuinfo.py
29The following line contains subprocess.getstatusoutput usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_limited_api.py
52The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/EpsImagePlugin.py
159The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/scipy/sparse/tests/test_sparsetools.py
51The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: bin/trackmetrackerhealth.py
4492The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/command/build_ext.py
715The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/mingw32ccompiler.py
453The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/ccompiler.py
147The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/tests/test_shell_utils.py
48The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/JpegImagePlugin.py
858The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
145The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/pydantic/_internal/_git.py
27The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/unixccompiler.py
66The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/tests/test_mingw32ccompiler.py
18The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/solnlib/modular_input/modinput.py
139The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
142The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_cython.py
69The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/pycparser/__init__.py
45The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/linalg/tests/test_linalg.py
2027The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/pydantic/_internal/_git.py
17The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/system_info.py
362The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/mcp/os/win32/utilities.py
209The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/scipy/_lib/tests/test__threadsafety.py
36The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/jsonschema/tests/test_cli.py
888The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
255The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/PIL/EpsImagePlugin.py
61The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/f2py/tests/util.py
266The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
225The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_limited_api.py
56The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_cython.py
53The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
291The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/trackme_compress_exec.py
82The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/solnlib/splunkenv.py
347The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/linalg/tests/test_linalg.py
2032The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
329The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
Suppressed 104 warning messages
File: lib/solnlib/modular_input/modinput.py
139The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/jsonschema/tests/test_cli.py
900The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/trackme_compress_exec.py
126The following line contains subprocess.Popen.kill usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/mingw32ccompiler.py
407The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
146The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/lib/tests/test_format.py
913The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/trackme_compress_exec.py
122The following line contains subprocess.Popen.terminate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/cffi/pkgconfig.py
37The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
177The following line contains subprocess.call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/tests/test_scripts.py
46The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_limited_api.py
69The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/f2py/tests/util.py
247The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_limited_api.py
64The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/f2py/tests/util.py
244The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/tests/test_shell_utils.py
45The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/random/tests/test_extending.py
68The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/ccompiler.py
653The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/mingw32ccompiler.py
334The following line contains subprocess.call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/core/tests/test_nditer.py
2076The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/pycparser/__init__.py
42The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/command/config.py
474The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/splunklib/searchcommands/external_search_command.py
136The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/EpsImagePlugin.py
61The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_cython.py
64The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/mcp/os/win32/utilities.py
221The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
273The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/random/tests/test_extending.py
74The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/cffi/pkgconfig.py
33The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/scipy/_lib/tests/test_import_cycles.py
15The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/exec_command.py
290The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
252The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_cython.py
57The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/mingw32ccompiler.py
221The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/langsmith/env/_runtime_env.py
112The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
332The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/linalg/tests/test_linalg.py
1953The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/scipy/_lib/tests/test_ccallback.py
197The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/langsmith/env/_runtime_env.py
125The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/reportlab/lib/testutils.py
369The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/test_callback.py
153The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/jsonschema/tests/test_cli.py
896The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/exec_command.py
283The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/solnlib/splunkenv.py
344The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 

check_hostnames_and_ips

Check that no sensitive hostnames/IPs are stored in the app.
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
67PUBLIC IP 2.5.4.4 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:67 
File: lib/3rdparty/linux_with_deps_313/PIL/_imaging.cpython-313-x86_64-linux-gnu.so
5828PUBLIC IP 3.1.4.1 is found in lib/3rdparty/linux_with_deps_313/PIL/_imaging.cpython-313-x86_64-linux-gnu.so:5828 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
17PUBLIC IP 2.5.29.16 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:17 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
190PUBLIC IP 1.3.101.111 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:190 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
25PUBLIC IP 2.5.29.35 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:25 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
23PUBLIC IP 2.5.29.32 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:23 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
28PUBLIC IP 2.5.29.46 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:28 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
63PUBLIC IP 2.5.4.97 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:63 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
16PUBLIC IP 2.5.29.15 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:16 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
29PUBLIC IP 2.5.29.54 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:29 
File: appserver/static/pages/AuditAiAssistant.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAiAssistant.js:388 
File: appserver/static/pages/AuditSvcUsage.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditSvcUsage.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
64PUBLIC IP 2.5.4.10 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:64 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
14PUBLIC IP 2.5.29.9 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:14 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so
12436PUBLIC IP 1.3.101.112 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so:12436 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
15PUBLIC IP 2.5.29.14 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:15 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
72PUBLIC IP 2.5.4.45 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:72 
File: lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_edwards.py
51PUBLIC IP 1.3.101.112 is found in lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_edwards.py:51 
File: appserver/static/pages/AuditDataSampling.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditDataSampling.js:388 
File: lib/3rdparty/linux_with_deps_313/pillow.libs/libavif-0b1c2ae7.so.16.4.1
81432PUBLIC IP 8.11.14.1 is found in lib/3rdparty/linux_with_deps_313/pillow.libs/libavif-0b1c2ae7.so.16.4.1:81432 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
52PUBLIC IP 2.5.29.29 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:52 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
21PUBLIC IP 2.5.29.30 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:21 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
69PUBLIC IP 2.5.4.12 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:69 
Suppressed 98 warning messages
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
24PUBLIC IP 2.5.29.33 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:24 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
30PUBLIC IP 2.5.29.28 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:30 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
18PUBLIC IP 2.5.29.17 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:18 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
22PUBLIC IP 2.5.29.31 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:22 
File: lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_montgomery.py
144PUBLIC IP 1.3.101.111 is found in lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_montgomery.py:144 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
122PUBLIC IP 1.3.101.113 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:122 
File: lib/3rdparty/linux_with_deps_313/lxml/objectify.cpython-313-x86_64-linux-gnu.so
25347PUBLIC IP 6.7.8.5 is found in lib/3rdparty/linux_with_deps_313/lxml/objectify.cpython-313-x86_64-linux-gnu.so:25347 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
14PUBLIC IP 2.5.29.9 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:14 
File: appserver/static/pages/AuditAiAdvisor.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAiAdvisor.js:388 
File: appserver/static/pages/TenantHome.js
779PUBLIC IP 12.21.1.11 is found in appserver/static/pages/TenantHome.js:779 
File: lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_edwards.py
111PUBLIC IP 1.3.101.113 is found in lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_edwards.py:111 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
18PUBLIC IP 2.5.29.17 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:18 
File: appserver/static/pages/AuditAiAdvisorScheduled.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAiAdvisorScheduled.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
83PUBLIC IP 2.5.4.15 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:83 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
60PUBLIC IP 2.5.4.7 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:60 
File: appserver/static/pages/AuditTenantsOps.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditTenantsOps.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
53PUBLIC IP 2.5.29.21 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:53 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
35PUBLIC IP 2.5.29.20 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:35 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
121PUBLIC IP 1.3.101.112 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:121 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so
12461PUBLIC IP 1.3.101.113 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so:12461 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
25PUBLIC IP 2.5.29.35 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:25 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
22PUBLIC IP 2.5.29.31 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:22 
File: appserver/static/pages/AuditTrackersPerf.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditTrackersPerf.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
58PUBLIC IP 2.5.4.3 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:58 
File: lib/3rdparty/linux_with_deps_313/urllib3/util/ssl_match_hostname.py
17PUBLIC IP 3.5.0.1 is found in lib/3rdparty/linux_with_deps_313/urllib3/util/ssl_match_hostname.py:17 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so
11769PUBLIC IP 1.3.101.110 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so:11769 
File: appserver/static/pages/VirtualTenants.js
906PUBLIC IP 12.21.1.11 is found in appserver/static/pages/VirtualTenants.js:906 
File: lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py
2724PUBLIC IP 66.35.250.150 is found in lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py:2724 
File: appserver/static/pages/TopologyStudio.js
395PUBLIC IP 12.21.1.11 is found in appserver/static/pages/TopologyStudio.js:395 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
19PUBLIC IP 2.5.29.18 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:19 
File: appserver/static/pages/RemoteAccountsOverview.js
772PUBLIC IP 12.21.1.11 is found in appserver/static/pages/RemoteAccountsOverview.js:772 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
189PUBLIC IP 1.3.101.110 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:189 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
21PUBLIC IP 2.5.29.30 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:21 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
59PUBLIC IP 2.5.4.6 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:59 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
26PUBLIC IP 2.5.29.36 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:26 
File: lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_edwards.py
111PUBLIC IP 1.3.101.113 is found in lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_edwards.py:111 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
74PUBLIC IP 2.5.4.65 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:74 
File: lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py
2724PUBLIC IP 64.236.16.20 is found in lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py:2724 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so
12590PUBLIC IP 1.3.101.111 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so:12590 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
16PUBLIC IP 2.5.29.15 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:16 
File: lib/trackme_libs_ai_fqm_advisor.py
597PRIVATE IP 192.168.1.10 is found in lib/trackme_libs_ai_fqm_advisor.py:597 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
73PUBLIC IP 2.5.4.46 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:73 
File: lib/3rdparty/linux_with_deps_39/Crypto/SelfTest/Protocol/test_ecdh.py
27PUBLIC IP 5.7.1.2 is found in lib/3rdparty/linux_with_deps_39/Crypto/SelfTest/Protocol/test_ecdh.py:27 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
54PUBLIC IP 2.5.29.24 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:54 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
66PUBLIC IP 2.5.4.5 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:66 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
17PUBLIC IP 2.5.29.16 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:17 
File: appserver/static/pages/AuditAdaptiveDelay.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAdaptiveDelay.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
68PUBLIC IP 2.5.4.42 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:68 
File: appserver/static/pages/LogsInspector.js
772PUBLIC IP 12.21.1.11 is found in appserver/static/pages/LogsInspector.js:772 
File: appserver/static/pages/AuditSla.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditSla.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
36PUBLIC IP 2.5.29.27 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:36 
File: lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_montgomery.py
73PUBLIC IP 1.3.101.110 is found in lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_montgomery.py:73 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
20PUBLIC IP 2.5.29.19 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:20 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
84PUBLIC IP 2.5.4.16 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:84 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
23PUBLIC IP 2.5.29.32 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:23 
File: lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py
2498PRIVATE IP 192.168.0.1 is found in lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py:2498 
File: lib/3rdparty/linux_with_deps_313/urllib3-2.8.0.dist-info/METADATA
35PUBLIC IP 1.2.0.0 is found in lib/3rdparty/linux_with_deps_313/urllib3-2.8.0.dist-info/METADATA:35 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
19PUBLIC IP 2.5.29.18 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:19 
File: lib/3rdparty/linux_with_deps_313/pillow.libs/libjpeg-02b4d8cf.so.62.4.0
7884PUBLIC IP 3.1.4.1 is found in lib/3rdparty/linux_with_deps_313/pillow.libs/libjpeg-02b4d8cf.so.62.4.0:7884 
File: appserver/static/pages/AuditAiRoutines.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAiRoutines.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
24PUBLIC IP 2.5.29.33 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:24 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
70PUBLIC IP 2.5.4.43 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:70 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
65PUBLIC IP 2.5.4.11 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:65 
File: lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_montgomery.py
73PUBLIC IP 1.3.101.110 is found in lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_montgomery.py:73 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
85PUBLIC IP 2.5.4.17 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:85 
File: lib/3rdparty/linux_with_deps_313/Crypto/SelfTest/Protocol/test_ecdh.py
27PUBLIC IP 5.7.1.2 is found in lib/3rdparty/linux_with_deps_313/Crypto/SelfTest/Protocol/test_ecdh.py:27 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
26PUBLIC IP 2.5.29.36 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:26 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
61PUBLIC IP 2.5.4.8 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:61 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
15PUBLIC IP 2.5.29.14 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:15 
File: lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_edwards.py
51PUBLIC IP 1.3.101.112 is found in lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_edwards.py:51 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
27PUBLIC IP 2.5.29.37 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:27 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
62PUBLIC IP 2.5.4.9 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:62 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
71PUBLIC IP 2.5.4.44 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:71 
File: lib/3rdparty/linux_with_deps_313/lxml/etree.cpython-313-x86_64-linux-gnu.so
49243PUBLIC IP 6.7.8.5 is found in lib/3rdparty/linux_with_deps_313/lxml/etree.cpython-313-x86_64-linux-gnu.so:49243 
File: lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_montgomery.py
144PUBLIC IP 1.3.101.111 is found in lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_montgomery.py:144 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
20PUBLIC IP 2.5.29.19 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:20 

check_for_custom_mako_templates

Check that apps do not contain custom Mako template files under appserver/templates/ or appserver/modules/.
File: appserver/templates/MaintenanceKdb.html
Custom Mako template file 'appserver/templates/MaintenanceKdb.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditTrackersPerf.html
Custom Mako template file 'appserver/templates/AuditTrackersPerf.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageSystemSettings.html
Custom Mako template file 'appserver/templates/ManageSystemSettings.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/base.html
Custom Mako template file 'appserver/templates/base.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/backuprestore.html
Custom Mako template file 'appserver/templates/backuprestore.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/LogsInspector.html
Custom Mako template file 'appserver/templates/LogsInspector.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/RestApiReference.html
Custom Mako template file 'appserver/templates/RestApiReference.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditSla.html
Custom Mako template file 'appserver/templates/AuditSla.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/SupportDiag.html
Custom Mako template file 'appserver/templates/SupportDiag.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/TopologyStudio.html
Custom Mako template file 'appserver/templates/TopologyStudio.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditTenantsOps.html
Custom Mako template file 'appserver/templates/AuditTenantsOps.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageAiProviders.html
Custom Mako template file 'appserver/templates/ManageAiProviders.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditDataSampling.html
Custom Mako template file 'appserver/templates/AuditDataSampling.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/RemoteAccountsOverview.html
Custom Mako template file 'appserver/templates/RemoteAccountsOverview.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageS3Accounts.html
Custom Mako template file 'appserver/templates/ManageS3Accounts.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAdvisorScheduled.html
Custom Mako template file 'appserver/templates/AuditAiAdvisorScheduled.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAdvisor.html
Custom Mako template file 'appserver/templates/AuditAiAdvisor.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAssistant.html
Custom Mako template file 'appserver/templates/AuditAiAssistant.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAdaptiveDelay.html
Custom Mako template file 'appserver/templates/AuditAdaptiveDelay.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditSvcUsage.html
Custom Mako template file 'appserver/templates/AuditSvcUsage.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ConfigurationGuardian.html
Custom Mako template file 'appserver/templates/ConfigurationGuardian.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/VirtualTenants.html
Custom Mako template file 'appserver/templates/VirtualTenants.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditKvstore.html
Custom Mako template file 'appserver/templates/AuditKvstore.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageBankHolidays.html
Custom Mako template file 'appserver/templates/ManageBankHolidays.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/license.html
Custom Mako template file 'appserver/templates/license.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageEmailAccounts.html
Custom Mako template file 'appserver/templates/ManageEmailAccounts.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/MaintenanceMode.html
Custom Mako template file 'appserver/templates/MaintenanceMode.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageRemoteAccounts.html
Custom Mako template file 'appserver/templates/ManageRemoteAccounts.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageAiTenants.html
Custom Mako template file 'appserver/templates/ManageAiTenants.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiRoutines.html
Custom Mako template file 'appserver/templates/AuditAiRoutines.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/TenantHome.html
Custom Mako template file 'appserver/templates/TenantHome.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 

check_for_existence_of_python_code_block_in_mako_template

Check for deprecated third-party Mako templates that allow arbitrary Python code execution through Splunk's CherryPy process, creating critical security vulnerabilities.
File: appserver/templates/backuprestore.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/LogsInspector.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageAiProviders.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAdvisor.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageAiTenants.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageS3Accounts.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAdaptiveDelay.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiRoutines.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditTenantsOps.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/SupportDiag.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditKvstore.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/RestApiReference.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ConfigurationGuardian.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditTrackersPerf.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/license.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageEmailAccounts.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/VirtualTenants.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditDataSampling.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/MaintenanceMode.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageSystemSettings.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAssistant.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditSla.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageBankHolidays.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAdvisorScheduled.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/TopologyStudio.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/TenantHome.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageRemoteAccounts.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditSvcUsage.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/RemoteAccountsOverview.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/MaintenanceKdb.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 

check_for_insecure_http_calls_in_python

Check for insecure HTTP calls in Python.
File: bin/trackme_rest_handler_maintenance.py
212Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/maintenance_kdb/admin/maintenance_kdb_manage_record"]; Keyword arguments, {"data": "?", "headers": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
5112Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_summary_idx"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
2839Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: lib/splunk_soar/trackme_soar.py
271Insecure HTTP Connection found Match: requests.get Positional arguments, ["num_pages", "?"]; Keyword arguments, {} 
File: bin/trackmemhmpipeline.py
459Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx"]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
128Insecure HTTP Connection found Match: requests.get Positional arguments, ["_key"]; Keyword arguments, {} 
File: lib/trackme_libs_policies_apply.py
207Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/component/write/refresh_shadow/services/trackme/v2/component/write/refresh_shadow"]; Keyword arguments, {"headers": "?", "json": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme_rest_handler_configuration.py
2314Insecure HTTP Connection found Match: requests.get Positional arguments, ["sharing"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
1026Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_audit_idx", "trackme_audit"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
1091Insecure HTTP Connection found Match: requests.get Positional arguments, ["splk_outliers_detection", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_topology_alerts_email.py
514Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_footer"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
222Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_list", "dsm,dhm,mhm,flx,fqm,wlk"]; Keyword arguments, {} 
File: bin/trackmesplksoarlookup.py
181Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["response"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
12844Insecure HTTP Connection found Match: requests.get Positional arguments, ["tracker_name"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3693Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/ack/get_ack_for_object"]; Keyword arguments, {"headers": "?", "data": "?", "verify": "?", "timeout": "?"} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
301Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_provider_name", ""]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
198Insecure HTTP Connection found Match: requests.get Positional arguments, ["count", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_policies_apply.py
234Insecure HTTP Connection found Match: requests.get Positional arguments, ["shadow_refresh"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
3151Insecure HTTP Connection found Match: requests.delete Positional arguments, ["/"]; Keyword arguments, {"verify": "?", "timeout": "?"} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
347Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_summary_idx", "trackme_summary"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_maintenance.py
857Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/maintenance_kdb/admin/maintenance_kdb_add_record"]; Keyword arguments, {"data": "?", "headers": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
2839Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_maintenance.py
1041Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/maintenance_kdb/admin/maintenance_kdb_manage_record"]; Keyword arguments, {"data": "?", "headers": "?", "verify": "?", "timeout": "?"} 
File: bin/trackmesplkadaptivedelay.py
1794Insecure HTTP Connection found Match: requests.get Positional arguments, ["adaptive_delay_notes", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
4971Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_dsm_user.py
375Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: lib/trackme_libs_policies_apply.py
232Insecure HTTP Connection found Match: requests.get Positional arguments, ["payload"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
5112Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_summary_idx"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
196Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_enabled", "?"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
300Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_mode", "inspect"]; Keyword arguments, {} 
File: bin/trackmesplkoutliersmladvisorhelper.py
349Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_summary_idx", "trackme_summary"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_maintenance.py
868Insecure HTTP Connection found Match: requests.get Positional arguments, ["record_id"]; Keyword arguments, {} 
Suppressed 288 warning messages
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
222Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_list", "dsm,dhm,mhm,flx,fqm,wlk"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3467Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_incident_subject_template", ""]; Keyword arguments, {} 
File: bin/trackmemhmpipeline.py
459Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2272Insecure HTTP Connection found Match: requests.get Positional arguments, ["owner"]; Keyword arguments, {} 
File: lib/trackme_libs_topology_alerts_email.py
419Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/configuration/get_emails_delivery_account"]; Keyword arguments, {"headers": "?", "data": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3712Insecure HTTP Connection found Match: requests.get Positional arguments, ["ack_mtime", "?"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
311Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_min_days_between_reviews", "?"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
1026Insecure HTTP Connection found Match: requests.get Positional arguments, ["index_settings", "?"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
301Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_provider_name", ""]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
311Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_min_days_between_reviews", "?"]; Keyword arguments, {} 
File: bin/trackmesplkwlkinactiveinspector.py
248Insecure HTTP Connection found Match: requests.get Positional arguments, ["success_count"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2102Insecure HTTP Connection found Match: requests.get Positional arguments, ["sharing"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
2172Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_enabled", "?"]; Keyword arguments, {} 
File: bin/trackmesplkoutliersmladvisorhelper.py
349Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_summary_idx", "trackme_summary"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
2113Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_mladvisor_enabled", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
132Insecure HTTP Connection found Match: requests.get Positional arguments, ["object"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2233Insecure HTTP Connection found Match: requests.get Positional arguments, ["sharing"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3295Insecure HTTP Connection found Match: requests.get Positional arguments, [""]; Keyword arguments, {"headers": "?", "verify": "?", "timeout": "?", "params": "?"} 
File: bin/trackmesplkoutlierstrain.py
562Insecure HTTP Connection found Match: requests.get Positional arguments, ["entity_outlier"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1740Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_conf"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_dsm_user.py
661Insecure HTTP Connection found Match: requests.get Positional arguments, ["data_sampling_obfuscation"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3711Insecure HTTP Connection found Match: requests.get Positional arguments, ["ack_state", "inactive"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2275Insecure HTTP Connection found Match: requests.get Positional arguments, ["sharing"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
5394Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_format", "html"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
3025Insecure HTTP Connection found Match: requests.get Positional arguments, ["/"]; Keyword arguments, {"verify": "?", "timeout": "?"} 
File: lib/trackme_libs_topology_alerts_email.py
508Insecure HTTP Connection found Match: requests.get Positional arguments, ["allowed_email_domains"]; Keyword arguments, {} 
File: bin/trackmesplkoutlierstrain.py
561Insecure HTTP Connection found Match: requests.get Positional arguments, ["entities_outliers"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
300Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_mode", "inspect"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3451Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_static_incident_subject", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
13267Insecure HTTP Connection found Match: requests.get Positional arguments, ["earliest"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
305Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_max_runtime_sec", "?"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
1026Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_conf", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
12843Insecure HTTP Connection found Match: requests.get Positional arguments, ["tracker_report"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
4250Insecure HTTP Connection found Match: requests.get Positional arguments, ["splk_outliers_detection", "?"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1778Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_audit_idx", "trackme_audit"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_dsm_user.py
375Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
347Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_summary_idx", "trackme_summary"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
152Insecure HTTP Connection found Match: requests.post Positional arguments, ["/servicesNS/nobody/trackme/storage/collections/data/kv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenants"]; Keyword arguments, {"headers": "?", "data": "?", "verify": "?", "timeout": "?"} 
File: lib/trackme_libs_server_identity.py
238Insecure HTTP Connection found Match: requests.get Positional arguments, ["/services/server/info"]; Keyword arguments, {"headers": "?", "params": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme_rest_handler_vtenants_admin.py
13268Insecure HTTP Connection found Match: requests.get Positional arguments, ["latest"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2230Insecure HTTP Connection found Match: requests.get Positional arguments, ["owner"]; Keyword arguments, {} 
File: lib/trackme_libs_topology_alerts_email.py
515Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_format"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3503Insecure HTTP Connection found Match: requests.get Positional arguments, ["allowed_email_domains", "?"]; Keyword arguments, {} 
File: bin/trackmesplktags.py
134Insecure HTTP Connection found Match: requests.get Positional arguments, ["central_kvcollection_mode", "search_mode"]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
167Insecure HTTP Connection found Match: requests.get Positional arguments, ["object"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1788Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["adaptive_delay", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
163Insecure HTTP Connection found Match: requests.get Positional arguments, ["_key"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
13265Insecure HTTP Connection found Match: requests.get Positional arguments, ["tracker_report"]; Keyword arguments, {} 
File: bin/trackmesplksoarlookup.py
181Insecure HTTP Connection found Match: requests.get Positional arguments, ["response"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
2177Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_list", "dsm,dhm,mhm,flx,fqm,wlk"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2311Insecure HTTP Connection found Match: requests.get Positional arguments, ["owner"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1788Insecure HTTP Connection found Match: requests.get Positional arguments, ["adaptive_delay", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2099Insecure HTTP Connection found Match: requests.get Positional arguments, ["owner"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
12845Insecure HTTP Connection found Match: requests.get Positional arguments, ["earliest"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_fqm_power.py
3348Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackers", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_topology_alerts_email.py
516Insecure HTTP Connection found Match: requests.get Positional arguments, ["environment_name"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1778Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_audit_idx", "trackme_audit"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
216Insecure HTTP Connection found Match: requests.get Positional arguments, ["splk_outliers_detection", "?"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1779Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
13266Insecure HTTP Connection found Match: requests.get Positional arguments, ["tracker_name"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1779Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
196Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_enabled", "?"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1794Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["adaptive_delay_notes", "?"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
305Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_max_runtime_sec", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
4971Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
12846Insecure HTTP Connection found Match: requests.get Positional arguments, ["latest"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
2973Insecure HTTP Connection found Match: requests.get Positional arguments, ["splk_outliers_detection", "?"]; Keyword arguments, {} 

check_for_supported_tls

Check that all outgoing connections use TLS in accordance to Splunk Cloud Platform policy.
File: bin/trackme_rest_handler_vtenants_admin.py
20936Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
84Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
Suppressed 367 warning messages
File: bin/trackme_rest_handler_vtenants_admin.py
22159Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21077Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21582Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
152Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutliersrender.py
314Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmegetkos.py
121Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21489Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
953Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
13209Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
182Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
13132Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_dsm_user.py
567Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmegetcoll.py
458Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
12710Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_variable_delay_power.py
1059Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21848Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
250Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
342Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21238Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
12787Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1834Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_policies_apply.py
207Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_dhm_user.py
568Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmedecisionmaker.py
237Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
216Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1529Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3295Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
54Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1278Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
20522Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
1520Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/splunktaucclib/legacy/rest.py
61Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1683Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1801Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
114Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21331Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkfqmparse.py
303Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_mhm_power.py
755Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutliersrender.py
352Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkfeedsdelayedinspector.py
699Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkadaptivedelay.py
1639Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_audit.py
95Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_maintenance.py
212Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
22338Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1040Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
13067Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_get_data.py
1046Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
6247Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
391Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_server_identity.py
238Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
20628Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_wlk_power.py
683Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_describe_vtenants.py
230Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_maintenance.py
1041Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
22635Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_topology_alerts_email.py
419Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_load.py
1847Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
147Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_outliers_engine_user.py
1228Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_topology_alerts_scheduling.py
72Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21920Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_dsm_power.py
1796Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3493Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkwlkinactiveinspector.py
227Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
20756Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_maintenance.py
857Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutlierstrain.py
234Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/solnlib/rest.py
58Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
22569Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
284Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_dsm_user.py
650Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_fqm_power.py
3339Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
20836Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_topology_references.py
359Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1316Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_load.py
1220Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkwlkinactiveinspector.py
154Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1337Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1083Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1445Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3693Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_fqm_power.py
684Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
2921Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutliersrender.py
215Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutlierstrain.py
534Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3193Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1352Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_topology_alerts_scheduling.py
239Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
4931Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmeguardianrunchecks.py
145Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3213Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_flx_power.py
687Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmetrackerhealth.py
795Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
54Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutliersrender.py
1830Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1237Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1650Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 

check_ucc_dependencies

Check UCC dependencies versions.
File: lib/solnlib/__init__.py
58Detected solnlib (version 8.1.1). No action required. 
File: lib/splunktaucclib/__init__.py
17Detected splunktaucclib (version 8.2.0). No action required. 

[ Full Report ]

Checks related to JavaScript usage.

[
success
]
check_for_vulnerable_javascript_library_usage
Detect usage of JavaScript libraries with known vulnerabilities.

Splunk Packaging Toolkit (SLIM) validation This group uses slim to extend the cloud checks for improved auto-vetting.

[
success
]
check_for_nested_apps
Check that nested apps do not exist as they are not valid for self-service install.
[
success
]
check_for_nested_archives
Check that nested archives do not exist as they are not valid for self-service install.
[
success
]
check_that_app_passes_slim_validation_for_cloud
Check that apps can be validated by SLIM or reject, since invalid apps can't be installed in Classic Splunk Cloud.

Malware, viruses, malicious content, user security standards (dynamic checks)

[
success
]
check_for_viruses
Check that the app does not include viruses.

Splunk app packaging standards These checks validate that a Splunk app has been correctly packaged, and can be provided safely for package validation.

[
success
]
check_package_compression
Check that the package is compressed correctly.
[
success
]
check_that_extracted_splunk_app_contains_default_app_conf_file
Check that the extracted Splunk App contains a default/app.conf file.
[
success
]
check_that_extracted_splunk_app_does_not_contain_files_with_invalid_permissions
Check that the extracted Splunk App does not contain any files with incorrect permissions. Files must have the owner's permissions include read and write (600).
[
success
]
check_that_extracted_splunk_app_does_not_contain_invalid_directories
Check that the extracted Splunk App does not contain any directories with incorrect permissions. Directories and subdirectories must have the owner's permissions set to r/w/x (700).
[
success
]
check_that_extracted_splunk_app_does_not_contain_prohibited_directories_or_files
Check that the extracted Splunk App does not contain any directories or files that start with a ., or directories that start with __MACOSX.
[
success
]
check_that_splunk_app_package_does_not_contain_files_outside_of_app
Check that the Splunk App package does not contain any non-app files. Files within a valid app folder or valid dependencies within a .dependencies folder are permitted, all other files are not.
[
success
]
check_that_splunk_app_package_extracts_to_visible_directory
Check that the compressed artifact extracts to a directory that does not start with a . character.
[
success
]
check_that_splunk_app_package_has_read_permission
Check that the Splunk app provided does not contain incorrect permissions. Packages must have the owner's read permission set to r (400).
[
not_applicable
]
check_that_splunk_app_package_has_valid_static_dependencies
Check that the Splunk App package contains only valid dependencies. Dependencies are valid if a .dependencies directory contains only valid app packages inside.
No ../.dependencies folder found. Please check that the Splunk App package contains only valid dependencies.
[
success
]
check_that_splunk_app_package_name_does_not_start_with_period
Check that the Splunk app provided does not start with a . character.
[
success
]
check_that_splunk_app_package_valid_compressed_file
Check that the Splunk app provided a valid compressed file.
[
not_applicable
]
check_that_splunk_app_package_with_static_dependencies_has_exactly_one_app_folder
Check that the Splunk App package with a .dependencies directory also contains exactly one valid app folder.
No ../.dependencies folder found. Please add a .dependencies directory with an valid app folder.
[
success
]
check_version_is_valid_semver
Check that the extracted Splunk App contains a default/app.conf file that contains an [id] or [launcher] stanza with a version property that is formatted as Semantic Versioning 2.0.0 (https://semver.org/).
[
success
]
check_that_extracted_splunk_app_does_not_contains_only_app_conf_file
Check that the extracted Splunk App does not contain only app.conf
[
not_applicable
]
check_that_splunk_app_package_with_static_dependencies_has_app_manifest
Check that the Splunk App package with a .dependencies directory also contains an app folder with an app.manifest.
No ../.dependencies folder found. Please add a .dependencies directory that contains an app folder with an app.manifest.

Authentication.conf file standards Ensure that bindDNpassword is not specified. For more, see authentication.conf.

[
not_applicable
]
check_authentication_conf_python_required
Check that authentication.conf with authType set to 'Scripted' or 'SAML' defines python.required.
authentication.conf does not exist
[
not_applicable
]
check_role_map_should_not_map_splunk_system_role
Check that all map roles defined in authentication.conf do not map to splunk-system-role.
authentication.conf does not exist
[
not_applicable
]
check_saml_auth_should_not_turn_off_signed_assertion
Check that saml-* stanzas in authentication.conf do not turn off signedAssertion property.
authentication.conf does not exist
[
not_applicable
]
check_scripted_authentication_has_valid_python_version_property
Check that all the scripted authentications defined in authentication.conf explicitly set the python.version to one of: python3, python3.7, python3.9 as required.
authentication.conf does not exist
[
success
]
check_for_o11y_roles
Check that authorize.conf does not contain any o11y role stanzas. O11y role is one of o11y_admin, o11y_power, o11y_read_only or o11y_usage.

Authorize.conf file standards Ensure that the authorize configuration file located in the /default folder is well-formed and valid. For more, see authorize.conf.

[
success
]
check_authorize_conf_capability_not_modified
Check that authorize.conf does not contain any modified capabilities.
[
success
]
check_authorize_conf_has_no_o11y_capabilities
Checks that authorize.conf has no capabilities starting with o11y_.
[
success
]
check_authorize_conf_role_names
Checks that roles defined in authorize.conf match the specification.
[
success
]
check_delete_indexes_allowed
Check that roles do not permit deletion of events from the internal indexes.
[
success
]
check_authorize_conf_has_no_user_configurable_stanza
Check that authorize.conf does not contain [commands:user_configurable] stanza. This configuration can be used to disable nsjail, which is prohibited in Splunk Cloud.

Binary file standards

[
success
]
check_idx_binary_compatibility
Checks that binaries that are distributed to the IDX tier of a distributed Splunk platform deployment are compatible with aarch64.
[
not_applicable
]
check_requires_adobe_flash
Check that the app does not use Adobe Flash files.
Didn't find any flash files.

Cloud operations simple application check This group serves to help validate simple applications in an effort to try and automate the validation process for cloud operations.

[
success
]
check_alert_actions_conf_for_alert_execute_cmd_properties
Check that commands referenced in the alert.execute.cmd property of all alert actions are checked for compliance with Splunk Cloud security policy. Prevent alert_actions.conf from being used to execute malicious commands.
[
success
]
check_authorize_conf_admin_all_objects_privileges
Check that authorize.conf does not grant excessive administrative permissions to the user. Prevent roles from gaining unauthorized permissions.
[
success
]
check_command_scripts_exist_for_cloud
Check that custom search commands have an executable or script per stanza.
[
success
]
check_default_data_ui_file_allow_list
Check that directories under data/ui contain only allowed files. Ensure unnecessary, unwanted files are not bundled in the app inappropriately.
[
success
]
check_distsearch_conf_for_concerning_replicated_file_size
Check if concerningReplicatedFileSize in distsearch.conf is larger than 50 MB.
[
success
]
check_import_roles_and_grantable_roles_for_builtin_roles
Check that authorize.conf does not contain importRoles and grantableRoles for any built-in roles. Modifying the inheritance of the default roles in Splunk can have potentially severe consequences, including privilege escalation.
[
success
]
check_indexes_conf_only_uses_splunk_db_variable
Check that indexes defined in indexes.conf use relative paths starting with $SPLUNK_DB
[
not_applicable
]
check_inputs_conf_batch_has_required_attributes
Check that batch input has required attributes. The following key/value pair is required for batch inputs: move_policy = sinkhole
inputs.conf does not exist
[
not_applicable
]
check_inputs_conf_for_batch
Check that batch inputs access files in a permitted way. To be permissible, the batch input must be either application specific (i.e. any file in the subtree of $SPLUNK_HOME/etc/apps/<my_app>) or belong to the subtree of $SPLUNK_HOME/var/spool and not include .stash or .stash_new files.
inputs.conf does not exist
[
success
]
check_lookups_allow_list
Check that lookups/ contains only approved file types (.csv, .csv.default, .csv.gz, .csv.tgz, .kmz) or files formatted as valid csv. Ensure malicious files are not passed off as lookup files.
[
success
]
check_metadata_allow_list
Check that the metadata/ directories only contain default.meta and local.meta files and do not contain any subdirectories. Ensure malicious files are not passed off as metadata files.
[
not_applicable
]
check_scripted_inputs_cmd_path_pattern
Check the cmd path pattern of scripted input defined in inputs.conf.
`inputs.conf` does not exist.
[
not_applicable
]
check_scripted_inputs_python_version
Check that python version is set to one of: python3, python3.7, python3.9 as required for scripted inputs defined in inputs.conf.
inputs.conf does not exist
[
success
]
check_setup_xml
Check that setup.xml does not exist in the app default or local folders.
[
not_applicable
]
check_stanza_of_authentication_conf
Check that only role-mapping stanza is allowed in authentication.conf as long as it doesn't map users to a cloud-internal role.
authentication.conf does not exist
[
success
]
check_static_directory_file_allow_list
Check that the static/ directory does not contains any subdirectories and contains only known file types. Ensure malicious files are not passed off as metadata files.
[
not_applicable
]
check_audit_conf_deny_list
Check that the app does not create audit.
audit.conf does not exist
[
success
]
check_authorize_conf_for_tokens_auth
Check that authorize.conf does not contain a [tokens_auth] stanza
[
not_applicable
]
check_bookmarks_conf_deny_list
Check that the app does not create bookmarks.
bookmarks.conf does not exist
[
not_applicable
]
check_datatypesbnf_conf_deny_list
Check that the app does not create datatypesbnf.
datatypesbnf.conf does not exist
[
not_applicable
]
check_default_mode_conf_deny_list
Check that the app does not create default-mode.
default-mode.conf does not exist
[
not_applicable
]
check_deploymentclient_conf_deny_list
Check that the app does not create deploymentclient.
deploymentclient.conf does not exist
[
not_applicable
]
check_deployment_conf_deny_list
Check that the app does not create deployment.
deployment.conf does not exist
[
success
]
check_for_index_volume_usage
Check that indexes.conf does not declare volumes.
[
not_applicable
]
check_for_inputs_fifo_usage
Check that default/inputs.conf or local/inputs.conf or users/<username>/local/inputs.conf does not contain any fifo:// stanzas.
inputs.conf.conf does not exist
[
not_applicable
]
check_health_conf_deny_list
Check that the app does not create health.
health.conf does not exist
[
not_applicable
]
check_inputs_conf_for_fschange
Check that default/inputs.conf or local/inputs.conf or users/<username>/local/inputs.conf does not contain any fschange:// stanzas.
inputs.conf.conf does not exist
[
not_applicable
]
check_inputs_conf_for_http_global_usage
Check that inputs.conf does not contain a [http] stanza
inputs.conf does not exist
[
not_applicable
]
check_inputs_conf_for_http_inputs
Apps cannot ship a configured HEC token in inputs.conf. HEC tokens must be created by stack admins via ACS. Refer: https://docs.splunk.com/Documentation/Splunk/9.1.0/Data/UsetheHTTPEventCollectorRemove [http://] stanza from inputs.conf.
inputs.conf does not exist
[
not_applicable
]
check_inputs_conf_for_remote_queue_monitor
Check that inputs.conf does not have any remote_queue inputs.
inputs.conf does not exist
[
not_applicable
]
check_inputs_conf_for_splunk_tcp
Check that default/inputs.conf or local/inputs.conf or users/<username>/local/inputs.conf does not contain any splunktcp:// stanzas.
inputs.conf.conf does not exist
[
not_applicable
]
check_inputs_conf_for_splunktcptoken
Check that inputs.conf does not contain a splunktcptoken stanza.
inputs.conf does not exist
[
not_applicable
]
check_inputs_conf_for_ssl
Check that inputs.conf does not have any SSL inputs.
inputs.conf does not exist
[
not_applicable
]
check_inputs_conf_for_tcp
Check that default/inputs.conf or local/inputs.conf or users/<username>/local/inputs.conf does not contain any tcp:// stanzas.
inputs.conf.conf does not exist
[
not_applicable
]
check_inputs_conf_for_udp
Check that inputs.conf does not have any UDP inputs.
inputs.conf does not exist
[
not_applicable
]
check_instance_cfg_conf_deny_list
Check that the app does not create instance.cfg.
instance.cfg.conf does not exist
[
not_applicable
]
check_introspection_of_cloud_filesystem
Check that the app does not create crawl.
crawl.conf does not exist
[
success
]
check_java_sdk_version
Check that Splunk SDK for Java is up-to-date.
[
not_applicable
]
check_literals_conf_deny_list
Check that the app does not create literals.
literals.conf does not exist
[
not_applicable
]
check_messages_conf_deny_list
Check that the app does not create messages.
messages.conf does not exist
[
not_applicable
]
check_modular_inputs_scripts_exist_for_cloud
Check that there is a script file in bin/ for each modular input defined in README/inputs.conf.spec.
No `inputs.conf.spec` was detected.
[
not_applicable
]
check_passwords_conf_deny_list
Check that the app does not create passwords.
passwords.conf does not exist
[
not_applicable
]
check_pubsub_conf_deny_list
Check that the app does not create pubsub.
pubsub.conf does not exist
[
not_applicable
]
check_segmenters_conf_deny_list
Check that app does not contain segmenters.conf with Splunk-defined stanza.
segmenters.conf does not exist
[
not_applicable
]
check_serverclass_conf_deny_list
Check that the app does not create serverclass.
serverclass.conf does not exist
[
not_applicable
]
check_serverclass_seed_xml_conf_deny_list
Check that the app does not create serverclass.seed.xml.
serverclass.seed.xml.conf does not exist
[
not_applicable
]
check_source_classifier_conf_deny_list
Check that the app does not create source-classifier.
source-classifier.conf does not exist
[
not_applicable
]
check_sourcetypes_conf_deny_list
Check that the app does not create sourcetypes.
sourcetypes.conf does not exist
[
not_applicable
]
check_splunk_launch_conf_deny_list
Check that the app does not create splunk-launch.
splunk-launch.conf does not exist
[
not_applicable
]
check_telemetry_conf_deny_list
Check that the app does not create telemetry.
telemetry.conf does not exist
[
success
]
check_that_app_contains_any_windows_specific_components
Check that the app contains MS Windows specific components, which will not function correctly in Splunk Cloud whose OS should be Linux x64.
[
success
]
check_that_no_configurations_of_default_source_type_in_props_conf
Check that the app does not contain configurations of default source type in props.conf, which will overwrite the configurations in system/default/props.conf and may affect other apps.
[
success
]
check_transforms_conf_for_external_cmd
Check that transforms.conf does not contain any transforms with malicious command scripts specified by external_cmd=<string> attribute.
[
not_applicable
]
check_user_seed_conf_deny_list
Check that the app does not create user-seed.
user-seed.conf does not exist
[
not_applicable
]
check_wmi_conf_deny_list
Check that the app does not create wmi.
wmi.conf does not exist
[
not_applicable
]
check_workload_pools_conf_deny_list
Check that the app does not create workload_pools.
workload_pools.conf does not exist
[
not_applicable
]
check_workload_rules_conf_deny_list
Check that the app does not create workload_rules.
workload_rules.conf does not exist

Checking for Front-end Libraries This check looks for various front-end libraries inside of apps. As of 03/23/2022, we are looking at Splunk UI, and it's predecessor, SplunkJS. This is currently an INFORMATIONAL Check. Updated on 04/17/2023 This check now is expanded to look for several other critical front-end libraries. 1. We have expanded the regex matching to be more inline with all the UDF Packages https://splunkui.splunk.com/Packages/dashboard-docs/?path=%2FFAQ 2. We have added a few other critical packages (@splunk/react-search, @splunk/react-time-range, @splunk/search-job, @splunk/ui-utils, @splunk/splunk-utils, @splunk/moment) 3. We have expanded the regex matching to be more inline with more of the Visualizations packages.

[
success
]
check_for_splunk_dashboard_core
Check that @splunk/dashboard-core is being used.
[
warning
]
check_for_splunk_frontend_utility_components
Check for usage of utility components.
File: appserver/static/pages/LogsInspector.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/TopologyStudio.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditDataSampling.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAdaptiveDelay.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAiAdvisorScheduled.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditSvcUsage.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/RemoteAccountsOverview.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAiAssistant.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditTenantsOps.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAiAdvisor.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditAiRoutines.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditTrackersPerf.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/AuditSla.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/TenantHome.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
File: appserver/static/pages/VirtualTenants.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI utility components. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/moment 
[
warning
]
check_for_splunk_js
Check that SplunkJS is being used.
File: appserver/static/pages/AuditDataSampling.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/TenantHome.js
388Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditSla.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/SupportDiag.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/LogsInspector.js
388Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditTenantsOps.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageS3Accounts.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/js/build/entry_page.js
228Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAiAdvisorScheduled.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageAiProviders.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/RestApiReference.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/VirtualTenants.js
388Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/license.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAiAdvisor.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageEmailAccounts.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/MaintenanceKdb.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ConfigurationGuardian.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditSvcUsage.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditKvstore.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/RemoteAccountsOverview.js
388Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/backuprestore.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageBankHolidays.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAiRoutines.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageSystemSettings.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageAiTenants.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAdaptiveDelay.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/ManageRemoteAccounts.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/TopologyStudio.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditAiAssistant.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/MaintenanceMode.js
2Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
File: appserver/static/pages/AuditTrackersPerf.js
4Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize SplunkJS. Please ignore this warning as it has no impact to your Splunk app. Match: splunkjs/mvc 
[
warning
]
check_for_splunk_sui
Check that SUI is being used.
File: appserver/static/pages/TenantHome.js
1203Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/react-icons 
File: appserver/static/pages/TenantHome.js
1485Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/react-icons 
File: appserver/static/pages/TopologyStudio.js
587Splunk has begun gathering telemetry on apps submitted to appinspect, that utilize Splunk UI. Please ignore this warning as it has no impact to your Splunk app. Match: @splunk/react-icons 
[
success
]
check_for_splunk_visualizations
Check that @splunk/visualizations is being used.

Check for git conflict related issue

[
success
]
check_for_git_merge_conflict_in_app
Check no git merge conflict is present

ITSI module verification

[
success
]
check_for_itsi_modules
Check that the app does not contain an ITSI module.

JavaScript file standards

[
not_applicable
]
check_javascript_sdk_version
Check that Splunk SDK for JavaScript is up-to-date.
Splunk SDK for JavaScript not found.
[
success
]
check_for_telemetry_metrics_in_javascript
Check for usages of telemetry metrics in JavaScript
[
success
]
check_telemetry_endpoint_usage_in_javascript
Check that app does not use REST endpoint to collect and send telemetry data.

jQuery vulnerabilities

[
success
]
check_hotlinking_splunk_web_libraries
Check that the app files are not importing files directly from the search head.
[
success
]
check_html_dashboards
Check for HTML dashboards, which are deprecated.
[
success
]
check_simplexml_standards_version
Check that the dashboards in your app have a valid version attribute.

Limits.conf file standards Ensure that /default/limits.conf or local/limits.conf file is omitted. When included in the app, the limits.conf file changes the limits that are placed on the system for hardware use and memory consumption, which is a task that should be handled by Splunk administrators and not by Splunk app developers. For more, see limits.conf.

[
not_applicable
]
check_limits_conf
Check that default/limits.conf or local/limits.conf or users/<username>/local/limits/conf has not been included.
limits.conf does not exist

Outputs.conf file standards Ensure that the outputs.conf file located in the /default folder of the app is well-formed and valid. For more, see outputs.conf.

[
not_applicable
]
check_if_outputs_conf_exists
Check that forwarding enabled in 'outputs.conf' is failed in cloud
outputs.conf does not exist

SPL2-specific checks This group includes checks for validating SPL2 files.

[
not_applicable
]
check_run_as_owner
Check that no SPL2 modules have @run_as_owner; annotation enabled.
data/spl2 does not exist
[
success
]
check_spl2_usage
Check if the app contains any SPL2 code.

Deprecated features from Splunk Enterprise 10.0.0 The following features should not be supported in Splunk 10.0.0 or later. For more, see Deprecated features and Changes for Splunk App developers.

[
success
]
check_for_js_in_saved_searches_action_script
Check that savedsearch.conf stanzas do not set action.script.filename to a JS script.
[
not_applicable
]
check_invoking_bundled_node
Check that there are no invocations of a Splunk NodeJS binary in any of the app files.
No invocations of bundled NodeJS binary found.
[
success
]
check_js_custom_alert_actions
Check that each custom alert action is not calling a JS script, which requires a Splunk NodeJS Binary.
[
success
]
check_js_use_in_custom_search_commands
Check that there are no custom search commands that invoke a JS script.
[
not_applicable
]
check_js_use_in_modular_inputs
Check that there are no modular inputs invoking a JS script.
No `inputs.conf.spec` file exists.
[
not_applicable
]
check_js_use_in_scripted_inputs
Check that there are no scripted inputs invoking a JS script.
inputs.conf does not exist
[
success
]
check_for_outdated_ssl_tls
Connections using ssl3, tls1.0, tls1.1 are not supported. Starting with Splunk 10.4, the only valid sslVersions values are tls1.2 and tls1.3. Apps are encouraged to use tls1.2,tls1.3 to indicate compatibility with TLS 1.3.

Deprecated features from Splunk Enterprise 5.0 The following features should not be supported in Splunk 5.0 or later.

[
success
]
check_deprecated_eventtype_autodiscovering
Check for use of findtypes SPL command in .conf files and SimpleXML.
[
not_applicable
]
check_for_savedsearches_used_in_eventtypes_conf
Check that saved searches are not used within event types. https://docs.splunk.com/Documentation/Splunk/5.0/ReleaseNotes/Deprecatedfeatures https://docs.splunk.com/Documentation/Splunk/7.2.5/Knowledge/Abouteventtypes
eventtypes.conf does not exist

Deprecated features from Splunk Enterprise 6.0 The following features should not be supported in Splunk 6.0 or later.

[
not_applicable
]
check_crawl_conf_deny_list
Check that app does not contain crawl.conf as it was deprecated & removed in Splunk.
crawl.conf does not exist
[
not_applicable
]
check_for_viewstates_conf
Check that viewstates.conf does not exist at local/viewstates.conf, default/viewstates.conf or users/<username>/local/viewstates.conf in the app. (https://docs.splunk.com/Documentation/Splunk/6.0/AdvancedDev/Migration#Viewstates_are_no_longer_supported_in_simple_XML)
viewstates.conf does not exist

Deprecated features from Splunk Enterprise 6.1 The following features should not be supported in Splunk 6.1 or later.

[
success
]
check_for_datamodel_acceleration_endpoint_usage
Check that deprecated datamodel/acceleration is not used. https://docs.splunk.com/Documentation/Splunk/6.2.0/RESTREF/RESTknowledge

Deprecated features from Splunk Enterprise 6.2 The following features should not be supported in Splunk 6.2 or later. https://docs.splunk.com/Documentation/Splunk/6.2.0/ReleaseNotes/Deprecatedfeatures

[
success
]
check_for_dashboard_xml_list_element
Check Dashboard XML files for <list> element. <list>was deprecated in Splunk 6.2 and removed in Splunk 6.5.
[
success
]
check_for_earliest_time_and_latest_time_elements_in_dashboard_xml
Check for the deprecated <earliestTime> and <latestTime> elements in dashboard XML files.As of version 6.2 these elements are replaced by <earliest> and <latest> elements.
[
success
]
check_for_populating_search_element_in_dashboard_xml
Check for the deprecated <populatingSearch> and <populatingSavedSearch> elements in dashboard XML files.Use the <search> element instead.
[
success
]
check_for_simple_xml_row_grouping
Check for the deprecated grouping attribute of row node in Simple XML files.Use the <panel> node instead.

Deprecated features from Splunk Enterprise 6.3 These following features should not be supported in Splunk 6.3 or later. For more, see Deprecated features and Changes for Splunk App developers.

[
success
]
check_for_run_script_alert_action
Check for use of running a script in alert action
[
success
]
check_for_django_bindings
Check for use of Django bindings.
[
success
]
check_for_simple_xml_chart_element_with_deprecated_option_names
Check for Simple XML <chart> panels with deprecated options charting.axisLabelsY.majorTickSize or charting.axisLabelsY.majorLabelVisibility.
[
success
]
check_for_simple_xml_option_element_with_name_previewresults
Check for the deprecated <option name='previewResults'> in Simple XML files.
[
success
]
check_for_simple_xml_seed_element
Check for the deprecated <seed> option in Simple XML forms. Use the <initialValue> element instead.

Deprecated features from Splunk Enterprise 6.4 The following features should not be supported in Splunk 6.4 or later. For more, see Deprecated features and Changes for Splunk App developers.

[
success
]
check_for_noninteger_height_option
Check that <option name="height"> uses an integer for the value.Do not use <option name="height">[value]px</option>.
[
success
]
check_for_simple_xml_single_element_with_deprecated_option_names
Check Simple XML files for <single> panels with deprecated options'additionalClass', 'afterLabel', 'beforeLabel', 'classField', 'linkFields','linkSearch', 'linkView'
[
success
]
check_web_conf_for_simple_xml_force_flash_charting
Check that web.conf does not use the simple_xml_force_flash_chartingproperty.
[
success
]
check_web_conf_for_simple_xml_module_render
Check that web.conf does not use the simple_xml_module_renderproperty.
[
success
]
check_for_splunk_js_d3chartview
Checks that views are not importing d3chartview.
[
success
]
check_for_splunk_js_googlemapsview
Checks that views are not importing googlemapsview.

Deprecated features from Splunk Enterprise 6.5 The following features should not be supported in Splunk 6.5 or later. For more, see Deprecated features and Changes for Splunk App developers.

[
success
]
check_for_dashboard_xml_option_element_with_deprecated_attribute_value
Check Dashboard XML files for <option> element with the deprecated option value "refresh.auto.interval" i.e. <option name="refresh.auto.interval">

Deprecated or removed features from Splunk Enterprise 6.6 The following features should not be supported in Splunk 6.6 or later. For more, see Deprecated features and Changes for Splunk App developers.

[
not_applicable
]
check_for_autolb_setting_in_outputs_conf
Check removed support for setting autoLB in outputs.conf
outputs.conf does not exist
[
success
]
check_for_app_install_endpoint
Check apps/appinstall usages
[
success
]
check_for_displayrownumbers_in_simple_xml
Check existence for displayRowNumbers option in simple xml. This option is no longer supported since Splunk 6.6.

Deprecated features from Splunk Enterprise 7.1 The following features should not be supported in Splunk 7.1 or later. For more, see Deprecated features and Changes for Splunk App developers.

[
success
]
check_for_input_command_usage
Check for use of input SPL command in .conf files and SimpleXML.

Deprecated features from Splunk Enterprise 7.2 The following features should not be supported in Splunk 7.2 or later. For more, see Deprecated features and Changes for Splunk App developers.

[
not_applicable
]
check_for_deprecated_literals_conf
Check deprecated literals.conf existence.
literals.conf does not exist

Deprecated features from Splunk Enterprise 7.3 The following features should not be supported in Splunk 7.3 or later. For more, see Deprecated features and Changes for Splunk App developers.

[
success
]
check_for_tscollect_command_usage
Check for use of tscollect SPL command in .conf files and SimpleXML.

Deprecated features from Splunk Enterprise 8.0 The following features should not be supported in Splunk 8.0.0 or later. For more, see Deprecated features and Changes for Splunk App developers.

[
success
]
check_for_advanced_xml_module_elements
Check that there is no Advanced XML, which was deprecated in Splunk Enterprise 6.3.
[
success
]
check_for_cherry_py_custom_controller_web_conf_endpoints
Check for the existence of custom CherryPy endpoints, which must be upgraded tobe Python 3-compatible for the Splunk Enterprise 8.0.
[
warning
]
check_for_python_script_existence
Check for the existence of Python scripts, which must be upgraded to be cross-compatible with Python 2 and 3 for Splunk Enterprise 8.0.
11629 Python files found. Update these Python scripts to be cross-compatible with Python 2 and 3 for Splunk Enterprise 8.0. See https://docs.splunk.com/Documentation/Splunk/latest/Python3Migration/AboutMigration for more information. If you've finished your update, please disregard this message.
[
success
]
check_for_removed_m2crypto_usage
Check for the existence of the M2Crypto package usage, which is removed in the Splunk Enterprise 8.0.

MCP tool input payload signatures Validate the optional static/tool_input_payload_signatures.json file used for MCP tool input schema registration.

[
not_applicable
]
check_tool_input_payload_signatures
Check tool_input_payload_signatures.json compatibility with MCP tool registration.
No static/tool_input_payload_signatures.json file exists.

tools.conf file standards Validate the MCP tool registration file (tools.conf) for Splunk apps.

[
not_applicable
]
check_tools_conf_description_required
Check that all tool stanzas have a 'description' field.
tools.conf does not exist
[
not_applicable
]
check_tools_conf_endpoint_name_exists
Check that each restmap stanza's 'endpoint_name' resolves to a stanza in restmap.conf.
tools.conf does not exist
[
not_applicable
]
check_tools_conf_endpoint_name_required
Check that restmap stanzas have an 'endpoint_name' field.
tools.conf does not exist
[
success
]
check_tools_conf_local_not_supported
Check that local/tools.conf does not exist. Only default/tools.conf is used for MCP tool registration; local/ overrides are not supported.
[
not_applicable
]
check_tools_conf_method_required
Check that restmap stanzas have a 'method' field.
tools.conf does not exist
[
not_applicable
]
check_tools_conf_method_valid
Check that restmap 'method' is one of: get, post, put, delete.
tools.conf does not exist
[
not_applicable
]
check_tools_conf_search_exists
Check that each savedsearches stanza's 'search' field resolves to a stanza in savedsearches.conf.
tools.conf does not exist
[
not_applicable
]
check_tools_conf_search_required
Check that savedsearches stanzas have a 'search' field.
tools.conf does not exist
[
not_applicable
]
check_tools_conf_stanza_name
Check that all stanzas are of type 'restmap' or 'savedsearches'.
tools.conf does not exist
[
not_applicable
]
check_tools_conf_tool_name_pattern
Check that tool names match ^[a-z][a-z0-9_]*$.
tools.conf does not exist
[
not_applicable
]
check_tools_conf_unique_tool_names
Check that tool names are unique across all stanzas (case-sensitive).
tools.conf does not exist

Web.conf File Standards Ensure that web.conf is safe for cloud deployment and that any exposed patterns match endpoints defined by the app - apps should not expose endpoints other than their own. Including web.conf can have adverse impacts for cloud. Allow only [endpoint:*] and [expose:*] stanzas, with expose only containing pattern= and methods= properties. - web.conf

[
success
]
check_cherrypy_controllers
Check that web.conf does not contain any custom CherryPy controllers.
[
success
]
check_web_conf
Check that web.conf only defines [endpoint:] and [expose:]stanzas, with [expose:*] only containing pattern= and methods=.

Modular inputs structure and standards Modular inputs are configured in an inputs.conf.spec file located in the /README directory of the app. For more, see Modular inputs overview, Modular inputs configuration, and Modular inputs basic example.

[
not_applicable
]
check_for_modular_inputs
Check if inputs.conf.spec includes modular inputs.
README/inputs.conf.spec does not exist.
[
not_applicable
]
check_for_scripted_inputs
Check if inputs.conf includes scripted inputs.
inputs.conf does not exist
[
not_applicable
]
check_inputs_conf_spec_stanzas_has_python_version_property
Check that all the modular inputs defined in inputs.conf.spec explicitly set the python.version to one of: python3, python3.7, python3.9 as required.
No `inputs.conf.spec` file exists.
[
not_applicable
]
check_modular_inputs_python_required
Check that Python modular inputs define python.required.
inputs.conf does not exist
[
not_applicable
]
check_scripted_inputs_python_required
Check that Python scripted inputs define python.required.
inputs.conf does not exist

JSON file standards

[
success
]
check_validate_json_data_is_well_formed
Check that all JSON files are well-formed.

Lookup file standards Lookups add fields from an external source to events based on the values of fields that are already present in those events.

[
success
]
check_for_lookups_file_name
Check that no two files/directories under the lookups directory have this naming pattern respectively:xxx and xxx.default - with the only difference in the .default extension.During the installation of an app in Splunk Cloud, a lookup file will be temporarily renamed to append an additional.default extension to it, which will cause error if a namesake file already exists.

Saved search standards Saved searches are defined in a savedsearches.conf file located in the /default and /local directory of the app. For more, see Save and share your reports and savedsearches.conf.

[
success
]
check_for_gratuitous_cron_scheduling
check that savedsearches.conf searches are cron scheduledreasonably. Less than five asterisks should be used.
[
success
]
check_for_real_time_saved_searches_for_cloud
Check that no real-time pre-index saved searches are being used insavedsearches.conf. Real-time pre-index saved searches are extremelysystem intensive and should be avoided.
[
success
]
check_for_sched_saved_searches_action_script_filename
Check that savedsearch.conf stanzas do not contain action.script.filename option
[
skipped
]
check_for_sched_saved_searches_earliest_time
Check that scheduled saved searches in 'savedsearches.conf' contain 'dispatch.earliest_time' or 'dispatch.index_earliest', define 'earliest' or '_index_earliest' in the search, or use 'auto_summarize.dispatch.earliest_time' for auto-summary searches.
File: default/savedsearches.conf
4default does not have a search setting 
[
success
]
check_for_sched_saved_searches_latest_time
Check that scheduled saved searches in 'savedsearches.conf' contain 'dispatch.latest_time' or 'dispatch.index_latest'.
[
success
]
check_for_saved_searches_populate_lookup
Check that savedsearch.conf stanza do not contain action.populate_lookup option`.

App.conf standards The app.conf file located at default/app.conf provides key application information and branding. For more, see app.conf.

[
success
]
check_app_conf_credentials_settings_python_required
Check that python.required is defined in [credentials_settings] stanza of app.conf if verify_script invokes the Python interpreter.
[
warning
]
check_custom_conf_replication
Check that custom .conf files have matching conf_replication_include.<conf_file_name> values in server.conf, under the [shclustering] stanza, to ensure that configurations are synchronized across Search Head Clusters.
File: default/server.conf
App contains `default/splunk_create.conf` but conf_replication_include.splunk_create setting is not set in server.conf. 
[
success
]
check_for_default_splunk_app
Check that id attribute under the package stanza in app.conf does not match with the Splunk default app names.
[
success
]
check_for_trigger_stanza
Check that default/app.conf, local/app.conf and all users/<username>/local/app.conf don't have a reload.<CONF_FILE>, where CONF_FILE is a non-custom conf. (https://docs.splunk.com/Documentation/Splunk/latest/Admin/Appconf#.5Btriggers.5D)
[
success
]
check_for_valid_package_id
Check that the [package] stanza in app.conf has a valid id value.See https://docs.splunk.com/Documentation/Splunk/latest/Admin/Appconf for details.
[
success
]
check_for_valid_ui_label
Check that the default/app.conf or local/app.conf or users/<username>/local/app.conf contains a label key value pair in the [ui] stanza and the length is between 5 and 80 characters inclusive.
[
success
]
check_reload_trigger_for_all_custom_confs
Check that custom config files have a corresponding reload trigger in app.conf. Without a reload trigger the app will request a restart on any change to the config file, which may be a negative experience for end-users.
[
success
]
check_reload_trigger_for_meta
Check that stanzas in files under metadata folder describing custom config files have corresponding reload triggers in app.conf. Without a reload trigger the app will request a restart on any change to the config file or a corresponding stanza, which may be a negative experience for end-users.
[
success
]
check_reload_trigger_value
Check that reload triggers in app.conf have valid values.
[
success
]
check_state_change_requires_restart
Check that [install] stanza in app.conf does not enable state_change_requires_restart.
[
not_applicable
]
check_no_install_source_checksum
Check in default/app.conf, 'local/app.conf' and each users/<username>/local/app.conf, that install_source_checksum not be set explicitly.
`local/app.conf` does not exist.
[
not_applicable
]
check_no_install_source_local_checksum
Check in default/app.conf, 'local/app.conf' and each `users/<username/local/app.conf, that install_source_local_checksum not be set explicitly.
`local/app.conf` does not exist.
[
success
]
check_that_setup_has_not_been_performed
Check that default/app.conf setting is_configured = False.

Directory structure standards Ensure that the directories and files in the app adhere to hierarchy standards.

[
success
]
check_that_local_does_not_exist
Check that the 'local' directory does not exist. All configuration should be in the 'default' directory.
[
success
]
check_filenames_for_spaces
Check that app has no .conf or dashboard filenames that contain spaces. Splunk software does not support such files.
[
success
]
check_that_users_does_not_exist
Check that the 'users' directory does not exist. All configuration should be in the 'default' directory.
[
success
]
check_for_local_meta
Check that the file 'local.meta' does not exist. All metadata permissions should be set in 'default.meta'.
[
success
]
check_that_app_name_config_is_valid
Check that the app name does not start with digits.
[
not_applicable
]
check_that_local_passwords_conf_does_not_exist
Check that local/passwords.conf or `users//local/passwords.conf does not exist. Password files are not transferable between instances.
The local directory does not exist.

Configuration file standards Ensure that all configuration files located in the /default folder are well-formed and valid.

[
success
]
check_collections_conf_for_specified_name_field_type
Check that the field type in field.<name> settings in collections.conf is valid. Only number, bool, string and time are allowed.
[
warning
]
check_collections_conf
Check if collections.conf exists.
File: default/collections.conf
App contains collections.conf. No action required. 
[
success
]
check_config_file_parsing_public
Check that all config files parse cleanly - no trailing whitespace after continuations, no duplicated stanzas or options.
[
success
]
check_manipulation_outside_of_app_container
Check that app conf files do not point to files outside the app container. Because hard-coded paths won't work in Splunk Cloud, we don't consider to check absolute paths.
[
success
]
check_no_default_stanzas
Check that app does not contain any .conf files that create global definitions using the [default] stanza.

Indexes.conf file standards Ensure that the index configuration file located in the /default and /local folder is well-formed and valid. For more, see indexes.conf.

[
success
]
check_coldToFrozenScript_has_valid_python_version_property
Check that all the coldToFrozenScript in indexes.conf are explicitly set the python.version to one of: python3, python3.7, python3.9 as required.
[
success
]
check_indexes_conf_properties
Check that indexes.conf only contains the required 'homePath', 'coldPath', and 'thawedPath' properties or the optional 'frozenTimePeriodInSecs', 'disabled', 'datatype' and 'repFactor' properties. All other properties are prohibited. Also, if 'repFactor' property exists, its value should be 'auto'.
[
success
]
check_indexes_conf_python_required
Check that indexes that use Python interpreter in coldToFrozenScript define python.required.
[
success
]
check_lower_cased_index_names
Check that all index names consist only of lowercase characters, numbers, underscores and hyphens. They cannot begin with an underscore or hyphen, or contain the word 'kvstore'. If index names have any uppercase characters any attempts to edit the index in the UI will cause a duplicate index stanza creation which will cause many errors in Splunk.
[
success
]
check_validate_default_indexes_not_modified
Check that no default Splunk indexes are modified by the app.

Meta file standards Ensure that all meta files located in the /metadata folder are well-formed and valid.

[
success
]
check_meta_default_write_access
Check that the global write access in .meta does not allow any authenticated user to write to the knowledge objects under the application.
[
warning
]
check_kos_are_accessible
Check that knowledge objects with access control restrictions defined in *.meta files are accessible to customers in Splunk Cloud.
File: metadata/default.meta
132The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
73The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
160The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
126The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
150The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
70The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
107The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
123The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
129The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
63The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
60The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
141The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
144The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
54The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
120The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
157The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
57The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
44The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
79The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
76The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
92The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
5The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
138The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
135The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 
File: metadata/default.meta
147The 'admin' role is not available to Splunk Cloud customers. Please consider also including the 'sc_admin' role if you want Splunk Cloud customer administrators to be able to access this knowledge object 

Props Configuration file standards Ensure that all props.conf files located in the default (or local) folder are well-formed and valid. props.conf transforms.conf

[
success
]
check_pretrained_sourcetypes_have_only_allowed_transforms
Check that pretrained sourctypes in props.confhave only 'TRANSFORM-' or 'SEDCMD' settings,and that those transforms only modify the host, source, or sourcetype.
[
success
]
check_props_conf_has_no_prohibited_characters_in_sourcetypes
Check that the sourcetypes in props.conf do not contain any special characters. Sourcetypes with names containing <>?&#[]/ or :: might not be visible.
[
success
]
check_props_conf_unarchive_cmd_is_not_set
Check that props.conf does not contain unarchive_cmd settings with invalid_cause set to archive.
[
not_applicable
]
check_props_conf_has_no_ingest_eval_lookups
Check that the props.conf does not contain lookup() usage in INGEST_EVAL options. This feature is not available in Splunk Cloud. For example: [lookup1] INGEST_EVAL= status_detail=lookup("http_status.csv", json_object("status", status), json_array("status_description"))
No INGEST_EVAL properties were declared.

Server configuration file standards Ensure that server.conf is well-formed and valid. For detailed information about the server configuration file, see server.conf.

[
success
]
check_server_conf_only_contains_custom_conf_sync_stanzas_or_diag_stanza
Check that server.conf in an app is only allowed to contain: 1. conf_replication_include. in [shclustering] stanza 2. or EXCLUDE- property in [diag] stanza,

Alert actions structure and standards Custom alert actions are defined in an alert_actions.conf file located in the /default directory of the app. For more, see Custom alert actions overview and alert_actions.conf.

[
success
]
check_alert_actions_conf_python_required
Check that alert action stanzas with alert.execute.cmd pointing to a Python script define python.required.
[
success
]
check_for_explicit_exe_args
Check whether any custom alert actions have executable arguments.
[
success
]
check_alert_actions_exe_exist
Check that each custom alert action has a valid executable. If it does, further check if the executable is Python script. If it does, further check it's Python 3 compatible.
[
success
]
check_for_payload_format
Check that each custom alert action's payload format has a value of xml or json.

Custom search command structure and standards Custom search commands are defined in a commands.conf file in the /default directory of the app. For more, see About writing custom search commands and commands.conf.

[
success
]
check_command_scripts_python_version
Check that commands.conf must explicitly define the python.version to be one of: python3, python3.7, python3.9 as required for each python-scripted custom command.
[
success
]
check_commands_conf_python_required
Check that commands.conf stanzas backed by a Python script define python.required.

Transforms.conf structure and standards Data transformations are defined in transforms.conf file. For more, see transforms.conf.

[
success
]
check_transforms_conf_python_required
Check that transforms.conf stanzas with external_cmd and external_type set to 'python' define python.required.

Custom workflow actions structure and standards Custom workflow actions are defined in a workflow_actions.conf file in the /default directory of the app. For more, see About lookups and workflow_actions.conf.

REST endpoints and handler standards REST endpoints are defined in a restmap.conf file in the /default and /local directory of the app. For more, see restmap.conf.

[
success
]
check_restmap_conf_exists
Check that restmap.conf file exists at default/restmap.conf, local/restmap.conf and users//local/restmap.conf` when using REST endpoints.
[
success
]
check_admin_external_restmap_conf_python_required
Check that Python handlers for the Extensible Administration Interface (EAI) define python.required.
[
success
]
check_rest_handler_python_executable_exists
Check that python.version is set to one of: python3, python3.7, python3.9 as required, for executables in restmap.conf.
[
success
]
check_rest_handler_scripts_exist_for_cloud
Check that each stanza in restmap.conf has a matching handler script.
[
success
]
check_script_restmap_conf_python_required
Check that Python script REST handlers define python.required.

Data model files and configurations Data models are defined in a datamodels.conf file in the /default directory of the app. For more, see About data models and datamodels.conf.

[
not_applicable
]
check_for_datamodel_acceleration
Check that the use of accelerated data models do not occur. If data model acceleration is required, developers should provide directions in documentation for how to accelerate data models from within the Splunk Web GUI. data model acceleration
datamodels.conf does not exist

Python file standards

[
success
]
check_all_python_files_are_well_formed
Check all python files are well-formed under python3 standard.
[
not_applicable
]
check_prohibited_python_filenames
Check that builtin modules are not overridden.
No forbidden python files were found.
[
warning
]
check_python_sdk_version
Check that Splunk SDK for Python is up-to-date.
File: lib/splunk_sdk-3.0.1.dist-info/METADATA
3Splunk SDK for Python detected (version 3.0.1). No action required at this time. 
Directory does not contain Splunk SDK for Python.
[
success
]
check_for_compiled_python
Check that there are no .pyc or .pyo files included in the app.
[
success
]
check_for_custom_python_interpreters
Check custom python interpreters usage.
[
success
]
check_for_debugging_and_profiling
Check debugging libraries usage.
[
warning
]
check_for_optional_operating_system_services
Check for features that are available on selected operating systems only.
File: lib/3rdparty/linux_with_deps_39/scipy/io/_netcdf.py
273Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/PIL/PdfParser.py
575Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_39/numpy/core/memmap.py
268Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/memmap.py
289Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_39/numpy/core/tests/test_multiarray.py
5737Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_multiarray.py
5865Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/PIL/ImageFile.py
342Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageFile.py
320Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_39/PIL/PdfParser.py
574Found usage of `mmap.mmap` which might not work on every operating system. 
File: lib/3rdparty/linux_with_deps_313/scipy/io/_netcdf.py
273Found usage of `mmap.mmap` which might not work on every operating system. 
[
warning
]
check_for_possible_threading
Check for the use of threading, and multiprocesses. Threading or process must be used with discretion and not negatively affect the Splunk installation as a whole.
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
164The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/ccompiler.py
145The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/system_info.py
2974The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/system_info.py
355The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/tests/test_public_api.py
65The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
248The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/cffi/pkgconfig.py
37The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/scipy/sparse/linalg/_dsolve/tests/test_linsolve.py
719The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/f2py/tests/test_callback.py
155The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/core/tests/test_limited_api.py
32The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/linalg/tests/test_linalg.py
1958The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/JpegImagePlugin.py
471The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/scipy/_lib/tests/test__threadsafety.py
36The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
323The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/PIL/EpsImagePlugin.py
159The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/tests/test_scripts.py
40The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/command/config.py
126The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/cffi/pkgconfig.py
33The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: bin/trackmetrackerhealth.py
4511The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
182The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/lib/tests/test_format.py
914The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/cpuinfo.py
29The following line contains subprocess.getstatusoutput usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_limited_api.py
52The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/EpsImagePlugin.py
159The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/scipy/sparse/tests/test_sparsetools.py
51The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: bin/trackmetrackerhealth.py
4492The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/command/build_ext.py
715The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/mingw32ccompiler.py
453The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/ccompiler.py
147The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/tests/test_shell_utils.py
48The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/JpegImagePlugin.py
858The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
145The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/pydantic/_internal/_git.py
27The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/unixccompiler.py
66The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/tests/test_mingw32ccompiler.py
18The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/solnlib/modular_input/modinput.py
139The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
142The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_cython.py
69The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/pycparser/__init__.py
45The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/linalg/tests/test_linalg.py
2027The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/pydantic/_internal/_git.py
17The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/system_info.py
362The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/mcp/os/win32/utilities.py
209The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/scipy/_lib/tests/test__threadsafety.py
36The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/jsonschema/tests/test_cli.py
888The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
255The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/PIL/EpsImagePlugin.py
61The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/f2py/tests/util.py
266The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
225The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_limited_api.py
56The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_cython.py
53The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
291The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/trackme_compress_exec.py
82The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/solnlib/splunkenv.py
347The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/linalg/tests/test_linalg.py
2032The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
329The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
Suppressed 104 warning messages
File: lib/solnlib/modular_input/modinput.py
139The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/jsonschema/tests/test_cli.py
900The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/trackme_compress_exec.py
126The following line contains subprocess.Popen.kill usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/mingw32ccompiler.py
407The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
146The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/lib/tests/test_format.py
913The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/trackme_compress_exec.py
122The following line contains subprocess.Popen.terminate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/cffi/pkgconfig.py
37The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
177The following line contains subprocess.call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/tests/test_scripts.py
46The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_limited_api.py
69The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/f2py/tests/util.py
247The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_limited_api.py
64The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/f2py/tests/util.py
244The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/tests/test_shell_utils.py
45The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/random/tests/test_extending.py
68The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/ccompiler.py
653The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/mingw32ccompiler.py
334The following line contains subprocess.call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/core/tests/test_nditer.py
2076The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/pycparser/__init__.py
42The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/command/config.py
474The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/splunklib/searchcommands/external_search_command.py
136The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/EpsImagePlugin.py
61The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_cython.py
64The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/mcp/os/win32/utilities.py
221The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/PIL/ImageShow.py
273The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/random/tests/test_extending.py
74The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/cffi/pkgconfig.py
33The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/scipy/_lib/tests/test_import_cycles.py
15The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/exec_command.py
290The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
252The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/numpy/_core/tests/test_cython.py
57The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/mingw32ccompiler.py
221The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/langsmith/env/_runtime_env.py
112The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/util.py
332The following line contains subprocess.Popen.communicate usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/linalg/tests/test_linalg.py
1953The following line contains subprocess.check_call usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_313/scipy/_lib/tests/test_ccallback.py
197The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/langsmith/env/_runtime_env.py
125The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/reportlab/lib/testutils.py
369The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/f2py/tests/test_callback.py
153The following line contains questionable usage `threading.Thread.start` in loop. Use threading and multiprocessing with discretion. 
File: lib/jsonschema/tests/test_cli.py
896The following line contains subprocess.check_output usage. Use threading and multiprocessing with discretion. 
File: lib/3rdparty/linux_with_deps_39/numpy/distutils/exec_command.py
283The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
File: lib/solnlib/splunkenv.py
344The following line contains subprocess.Popen usage. Use threading and multiprocessing with discretion. 
[
success
]
check_for_program_frameworks
Check program frameworks usage.
[
success
]
check_for_python_multimedia_services
Check multimedia modules usage.
[
success
]
check_for_python_udp_network_communications
Check for UDP network communication
[
success
]
check_for_root_privilege_escalation
Check possible root privilege escalation
[
not_applicable
]
check_python_httplib2_version
Check python httplib2 version.
Python httplib2 library not found.

addon_builder.conf standards The addon_builder.conf file located at default/addon_builder.conf provides the information about the Add-on Builder associated with the Splunk App.

[
not_applicable
]
check_for_addon_builder_version
Checks that the addon_builder.conf contains an builder version number between 4.5.0 and 4.5.1 in the [base] stanza. Ensure that apps built with Add-on Builder are maintained with an up-to-date version of Add-on Builder.
addon_builder.conf does not exist

Malware, viruses, malicious content, user security standards (static checks)

[
warning
]
check_hostnames_and_ips
Check that no sensitive hostnames/IPs are stored in the app.
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
67PUBLIC IP 2.5.4.4 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:67 
File: lib/3rdparty/linux_with_deps_313/PIL/_imaging.cpython-313-x86_64-linux-gnu.so
5828PUBLIC IP 3.1.4.1 is found in lib/3rdparty/linux_with_deps_313/PIL/_imaging.cpython-313-x86_64-linux-gnu.so:5828 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
17PUBLIC IP 2.5.29.16 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:17 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
190PUBLIC IP 1.3.101.111 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:190 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
25PUBLIC IP 2.5.29.35 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:25 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
23PUBLIC IP 2.5.29.32 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:23 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
28PUBLIC IP 2.5.29.46 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:28 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
63PUBLIC IP 2.5.4.97 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:63 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
16PUBLIC IP 2.5.29.15 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:16 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
29PUBLIC IP 2.5.29.54 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:29 
File: appserver/static/pages/AuditAiAssistant.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAiAssistant.js:388 
File: appserver/static/pages/AuditSvcUsage.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditSvcUsage.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
64PUBLIC IP 2.5.4.10 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:64 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
14PUBLIC IP 2.5.29.9 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:14 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so
12436PUBLIC IP 1.3.101.112 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so:12436 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
15PUBLIC IP 2.5.29.14 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:15 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
72PUBLIC IP 2.5.4.45 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:72 
File: lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_edwards.py
51PUBLIC IP 1.3.101.112 is found in lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_edwards.py:51 
File: appserver/static/pages/AuditDataSampling.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditDataSampling.js:388 
File: lib/3rdparty/linux_with_deps_313/pillow.libs/libavif-0b1c2ae7.so.16.4.1
81432PUBLIC IP 8.11.14.1 is found in lib/3rdparty/linux_with_deps_313/pillow.libs/libavif-0b1c2ae7.so.16.4.1:81432 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
52PUBLIC IP 2.5.29.29 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:52 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
21PUBLIC IP 2.5.29.30 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:21 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
69PUBLIC IP 2.5.4.12 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:69 
Suppressed 98 warning messages
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
24PUBLIC IP 2.5.29.33 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:24 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
30PUBLIC IP 2.5.29.28 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:30 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
18PUBLIC IP 2.5.29.17 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:18 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
22PUBLIC IP 2.5.29.31 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:22 
File: lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_montgomery.py
144PUBLIC IP 1.3.101.111 is found in lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_montgomery.py:144 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
122PUBLIC IP 1.3.101.113 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:122 
File: lib/3rdparty/linux_with_deps_313/lxml/objectify.cpython-313-x86_64-linux-gnu.so
25347PUBLIC IP 6.7.8.5 is found in lib/3rdparty/linux_with_deps_313/lxml/objectify.cpython-313-x86_64-linux-gnu.so:25347 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
14PUBLIC IP 2.5.29.9 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:14 
File: appserver/static/pages/AuditAiAdvisor.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAiAdvisor.js:388 
File: appserver/static/pages/TenantHome.js
779PUBLIC IP 12.21.1.11 is found in appserver/static/pages/TenantHome.js:779 
File: lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_edwards.py
111PUBLIC IP 1.3.101.113 is found in lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_edwards.py:111 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
18PUBLIC IP 2.5.29.17 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:18 
File: appserver/static/pages/AuditAiAdvisorScheduled.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAiAdvisorScheduled.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
83PUBLIC IP 2.5.4.15 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:83 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
60PUBLIC IP 2.5.4.7 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:60 
File: appserver/static/pages/AuditTenantsOps.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditTenantsOps.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
53PUBLIC IP 2.5.29.21 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:53 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
35PUBLIC IP 2.5.29.20 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:35 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
121PUBLIC IP 1.3.101.112 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:121 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so
12461PUBLIC IP 1.3.101.113 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so:12461 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
25PUBLIC IP 2.5.29.35 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:25 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
22PUBLIC IP 2.5.29.31 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:22 
File: appserver/static/pages/AuditTrackersPerf.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditTrackersPerf.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
58PUBLIC IP 2.5.4.3 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:58 
File: lib/3rdparty/linux_with_deps_313/urllib3/util/ssl_match_hostname.py
17PUBLIC IP 3.5.0.1 is found in lib/3rdparty/linux_with_deps_313/urllib3/util/ssl_match_hostname.py:17 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so
11769PUBLIC IP 1.3.101.110 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so:11769 
File: appserver/static/pages/VirtualTenants.js
906PUBLIC IP 12.21.1.11 is found in appserver/static/pages/VirtualTenants.js:906 
File: lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py
2724PUBLIC IP 66.35.250.150 is found in lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py:2724 
File: appserver/static/pages/TopologyStudio.js
395PUBLIC IP 12.21.1.11 is found in appserver/static/pages/TopologyStudio.js:395 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
19PUBLIC IP 2.5.29.18 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:19 
File: appserver/static/pages/RemoteAccountsOverview.js
772PUBLIC IP 12.21.1.11 is found in appserver/static/pages/RemoteAccountsOverview.js:772 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
189PUBLIC IP 1.3.101.110 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:189 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
21PUBLIC IP 2.5.29.30 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:21 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
59PUBLIC IP 2.5.4.6 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:59 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
26PUBLIC IP 2.5.29.36 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:26 
File: lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_edwards.py
111PUBLIC IP 1.3.101.113 is found in lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_edwards.py:111 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
74PUBLIC IP 2.5.4.65 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:74 
File: lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py
2724PUBLIC IP 64.236.16.20 is found in lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py:2724 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so
12590PUBLIC IP 1.3.101.111 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/bindings/_rust.abi3.so:12590 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
16PUBLIC IP 2.5.29.15 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:16 
File: lib/trackme_libs_ai_fqm_advisor.py
597PRIVATE IP 192.168.1.10 is found in lib/trackme_libs_ai_fqm_advisor.py:597 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
73PUBLIC IP 2.5.4.46 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:73 
File: lib/3rdparty/linux_with_deps_39/Crypto/SelfTest/Protocol/test_ecdh.py
27PUBLIC IP 5.7.1.2 is found in lib/3rdparty/linux_with_deps_39/Crypto/SelfTest/Protocol/test_ecdh.py:27 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
54PUBLIC IP 2.5.29.24 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:54 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
66PUBLIC IP 2.5.4.5 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:66 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
17PUBLIC IP 2.5.29.16 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:17 
File: appserver/static/pages/AuditAdaptiveDelay.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAdaptiveDelay.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
68PUBLIC IP 2.5.4.42 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:68 
File: appserver/static/pages/LogsInspector.js
772PUBLIC IP 12.21.1.11 is found in appserver/static/pages/LogsInspector.js:772 
File: appserver/static/pages/AuditSla.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditSla.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
36PUBLIC IP 2.5.29.27 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:36 
File: lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_montgomery.py
73PUBLIC IP 1.3.101.110 is found in lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_montgomery.py:73 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
20PUBLIC IP 2.5.29.19 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:20 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
84PUBLIC IP 2.5.4.16 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:84 
File: lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py
23PUBLIC IP 2.5.29.32 is found in lib/3rdparty/linux_with_deps_39/cryptography/hazmat/_oid.py:23 
File: lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py
2498PRIVATE IP 192.168.0.1 is found in lib/3rdparty/linux_with_deps_313/regex/tests/test_regex.py:2498 
File: lib/3rdparty/linux_with_deps_313/urllib3-2.8.0.dist-info/METADATA
35PUBLIC IP 1.2.0.0 is found in lib/3rdparty/linux_with_deps_313/urllib3-2.8.0.dist-info/METADATA:35 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
19PUBLIC IP 2.5.29.18 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:19 
File: lib/3rdparty/linux_with_deps_313/pillow.libs/libjpeg-02b4d8cf.so.62.4.0
7884PUBLIC IP 3.1.4.1 is found in lib/3rdparty/linux_with_deps_313/pillow.libs/libjpeg-02b4d8cf.so.62.4.0:7884 
File: appserver/static/pages/AuditAiRoutines.js
388PUBLIC IP 12.21.1.11 is found in appserver/static/pages/AuditAiRoutines.js:388 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
24PUBLIC IP 2.5.29.33 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:24 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
70PUBLIC IP 2.5.4.43 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:70 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
65PUBLIC IP 2.5.4.11 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:65 
File: lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_montgomery.py
73PUBLIC IP 1.3.101.110 is found in lib/3rdparty/linux_with_deps_313/Crypto/PublicKey/_montgomery.py:73 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
85PUBLIC IP 2.5.4.17 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:85 
File: lib/3rdparty/linux_with_deps_313/Crypto/SelfTest/Protocol/test_ecdh.py
27PUBLIC IP 5.7.1.2 is found in lib/3rdparty/linux_with_deps_313/Crypto/SelfTest/Protocol/test_ecdh.py:27 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
26PUBLIC IP 2.5.29.36 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:26 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
61PUBLIC IP 2.5.4.8 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:61 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
15PUBLIC IP 2.5.29.14 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:15 
File: lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_edwards.py
51PUBLIC IP 1.3.101.112 is found in lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_edwards.py:51 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
27PUBLIC IP 2.5.29.37 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:27 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
62PUBLIC IP 2.5.4.9 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:62 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
71PUBLIC IP 2.5.4.44 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:71 
File: lib/3rdparty/linux_with_deps_313/lxml/etree.cpython-313-x86_64-linux-gnu.so
49243PUBLIC IP 6.7.8.5 is found in lib/3rdparty/linux_with_deps_313/lxml/etree.cpython-313-x86_64-linux-gnu.so:49243 
File: lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_montgomery.py
144PUBLIC IP 1.3.101.111 is found in lib/3rdparty/linux_with_deps_39/Crypto/PublicKey/_montgomery.py:144 
File: lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py
20PUBLIC IP 2.5.29.19 is found in lib/3rdparty/linux_with_deps_313/cryptography/hazmat/_oid.py:20 

Operating system standards

[
success
]
check_destructive_commands
Check for the use of malicious shell commands in configuration files or shell scripts to corrupt the OS or Splunk instance. Other scripting languages are covered by other checks.
[
success
]
check_runshellscript_command
Check that runshellscript command is not used. This command is considered risky because, if used incorrectly, it can pose a security risk or potentially lose data when it runs.

Security vulnerabilities

[
not_applicable
]
check_for_camel_jars
Check for vulnerable Apache Camel dependencies.
No pom.xml, build.gradle or build.gradle.kts file found
[
warning
]
check_for_custom_mako_templates
Check that apps do not contain custom Mako template files under appserver/templates/ or appserver/modules/.
File: appserver/templates/MaintenanceKdb.html
Custom Mako template file 'appserver/templates/MaintenanceKdb.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditTrackersPerf.html
Custom Mako template file 'appserver/templates/AuditTrackersPerf.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageSystemSettings.html
Custom Mako template file 'appserver/templates/ManageSystemSettings.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/base.html
Custom Mako template file 'appserver/templates/base.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/backuprestore.html
Custom Mako template file 'appserver/templates/backuprestore.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/LogsInspector.html
Custom Mako template file 'appserver/templates/LogsInspector.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/RestApiReference.html
Custom Mako template file 'appserver/templates/RestApiReference.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditSla.html
Custom Mako template file 'appserver/templates/AuditSla.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/SupportDiag.html
Custom Mako template file 'appserver/templates/SupportDiag.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/TopologyStudio.html
Custom Mako template file 'appserver/templates/TopologyStudio.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditTenantsOps.html
Custom Mako template file 'appserver/templates/AuditTenantsOps.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageAiProviders.html
Custom Mako template file 'appserver/templates/ManageAiProviders.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditDataSampling.html
Custom Mako template file 'appserver/templates/AuditDataSampling.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/RemoteAccountsOverview.html
Custom Mako template file 'appserver/templates/RemoteAccountsOverview.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageS3Accounts.html
Custom Mako template file 'appserver/templates/ManageS3Accounts.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAdvisorScheduled.html
Custom Mako template file 'appserver/templates/AuditAiAdvisorScheduled.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAdvisor.html
Custom Mako template file 'appserver/templates/AuditAiAdvisor.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAssistant.html
Custom Mako template file 'appserver/templates/AuditAiAssistant.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAdaptiveDelay.html
Custom Mako template file 'appserver/templates/AuditAdaptiveDelay.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditSvcUsage.html
Custom Mako template file 'appserver/templates/AuditSvcUsage.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ConfigurationGuardian.html
Custom Mako template file 'appserver/templates/ConfigurationGuardian.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/VirtualTenants.html
Custom Mako template file 'appserver/templates/VirtualTenants.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditKvstore.html
Custom Mako template file 'appserver/templates/AuditKvstore.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageBankHolidays.html
Custom Mako template file 'appserver/templates/ManageBankHolidays.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/license.html
Custom Mako template file 'appserver/templates/license.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageEmailAccounts.html
Custom Mako template file 'appserver/templates/ManageEmailAccounts.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/MaintenanceMode.html
Custom Mako template file 'appserver/templates/MaintenanceMode.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageRemoteAccounts.html
Custom Mako template file 'appserver/templates/ManageRemoteAccounts.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageAiTenants.html
Custom Mako template file 'appserver/templates/ManageAiTenants.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiRoutines.html
Custom Mako template file 'appserver/templates/AuditAiRoutines.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/TenantHome.html
Custom Mako template file 'appserver/templates/TenantHome.html' is deprecated in Splunk Enterprise 10.4. Future Splunk platform versions will no longer support custom Mako templates. Remove the custom template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with @splunk/create version '11.0.0' or later. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
[
warning
]
check_for_existence_of_python_code_block_in_mako_template
Check for deprecated third-party Mako templates that allow arbitrary Python code execution through Splunk's CherryPy process, creating critical security vulnerabilities.
File: appserver/templates/backuprestore.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/LogsInspector.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageAiProviders.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAdvisor.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageAiTenants.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageS3Accounts.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAdaptiveDelay.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiRoutines.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditTenantsOps.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/SupportDiag.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditKvstore.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/RestApiReference.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ConfigurationGuardian.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditTrackersPerf.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/license.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageEmailAccounts.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/VirtualTenants.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditDataSampling.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/MaintenanceMode.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageSystemSettings.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAssistant.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditSla.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageBankHolidays.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditAiAdvisorScheduled.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/TopologyStudio.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/TenantHome.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/ManageRemoteAccounts.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/AuditSvcUsage.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/RemoteAccountsOverview.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
File: appserver/templates/MaintenanceKdb.html
Custom Mako templates are deprecated in Splunk Enterprise 10.4 and will be removed in a future version of the Splunk platform. Remove the custom Mako template. For UCC-generated apps, regenerate the app with UCC framework version '6.3.0' or later. For apps built using @splunk/create, regenerate the app with a version that uses the new template. See https://help.splunk.com/en/splunk-enterprise/release-notes-and-updates/release-notes/10.4/deprecated-features/deprecated-and-removed-in-version-10.4. 
[
warning
]
check_for_insecure_http_calls_in_python
Check for insecure HTTP calls in Python.
File: bin/trackme_rest_handler_maintenance.py
212Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/maintenance_kdb/admin/maintenance_kdb_manage_record"]; Keyword arguments, {"data": "?", "headers": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
5112Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_summary_idx"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
2839Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: lib/splunk_soar/trackme_soar.py
271Insecure HTTP Connection found Match: requests.get Positional arguments, ["num_pages", "?"]; Keyword arguments, {} 
File: bin/trackmemhmpipeline.py
459Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx"]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
128Insecure HTTP Connection found Match: requests.get Positional arguments, ["_key"]; Keyword arguments, {} 
File: lib/trackme_libs_policies_apply.py
207Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/component/write/refresh_shadow/services/trackme/v2/component/write/refresh_shadow"]; Keyword arguments, {"headers": "?", "json": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme_rest_handler_configuration.py
2314Insecure HTTP Connection found Match: requests.get Positional arguments, ["sharing"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
1026Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_audit_idx", "trackme_audit"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
1091Insecure HTTP Connection found Match: requests.get Positional arguments, ["splk_outliers_detection", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_topology_alerts_email.py
514Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_footer"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
222Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_list", "dsm,dhm,mhm,flx,fqm,wlk"]; Keyword arguments, {} 
File: bin/trackmesplksoarlookup.py
181Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["response"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
12844Insecure HTTP Connection found Match: requests.get Positional arguments, ["tracker_name"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3693Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/ack/get_ack_for_object"]; Keyword arguments, {"headers": "?", "data": "?", "verify": "?", "timeout": "?"} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
301Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_provider_name", ""]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
198Insecure HTTP Connection found Match: requests.get Positional arguments, ["count", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_policies_apply.py
234Insecure HTTP Connection found Match: requests.get Positional arguments, ["shadow_refresh"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
3151Insecure HTTP Connection found Match: requests.delete Positional arguments, ["/"]; Keyword arguments, {"verify": "?", "timeout": "?"} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
347Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_summary_idx", "trackme_summary"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_maintenance.py
857Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/maintenance_kdb/admin/maintenance_kdb_add_record"]; Keyword arguments, {"data": "?", "headers": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
2839Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_maintenance.py
1041Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/maintenance_kdb/admin/maintenance_kdb_manage_record"]; Keyword arguments, {"data": "?", "headers": "?", "verify": "?", "timeout": "?"} 
File: bin/trackmesplkadaptivedelay.py
1794Insecure HTTP Connection found Match: requests.get Positional arguments, ["adaptive_delay_notes", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
4971Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_dsm_user.py
375Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: lib/trackme_libs_policies_apply.py
232Insecure HTTP Connection found Match: requests.get Positional arguments, ["payload"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
5112Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_summary_idx"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
196Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_enabled", "?"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
300Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_mode", "inspect"]; Keyword arguments, {} 
File: bin/trackmesplkoutliersmladvisorhelper.py
349Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_summary_idx", "trackme_summary"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_maintenance.py
868Insecure HTTP Connection found Match: requests.get Positional arguments, ["record_id"]; Keyword arguments, {} 
Suppressed 288 warning messages
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
222Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_list", "dsm,dhm,mhm,flx,fqm,wlk"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3467Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_incident_subject_template", ""]; Keyword arguments, {} 
File: bin/trackmemhmpipeline.py
459Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2272Insecure HTTP Connection found Match: requests.get Positional arguments, ["owner"]; Keyword arguments, {} 
File: lib/trackme_libs_topology_alerts_email.py
419Insecure HTTP Connection found Match: requests.post Positional arguments, ["/services/trackme/v2/configuration/get_emails_delivery_account"]; Keyword arguments, {"headers": "?", "data": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3712Insecure HTTP Connection found Match: requests.get Positional arguments, ["ack_mtime", "?"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
311Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_min_days_between_reviews", "?"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
1026Insecure HTTP Connection found Match: requests.get Positional arguments, ["index_settings", "?"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
301Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_provider_name", ""]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
311Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_min_days_between_reviews", "?"]; Keyword arguments, {} 
File: bin/trackmesplkwlkinactiveinspector.py
248Insecure HTTP Connection found Match: requests.get Positional arguments, ["success_count"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2102Insecure HTTP Connection found Match: requests.get Positional arguments, ["sharing"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
2172Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_enabled", "?"]; Keyword arguments, {} 
File: bin/trackmesplkoutliersmladvisorhelper.py
349Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_summary_idx", "trackme_summary"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
2113Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_mladvisor_enabled", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
132Insecure HTTP Connection found Match: requests.get Positional arguments, ["object"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2233Insecure HTTP Connection found Match: requests.get Positional arguments, ["sharing"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3295Insecure HTTP Connection found Match: requests.get Positional arguments, [""]; Keyword arguments, {"headers": "?", "verify": "?", "timeout": "?", "params": "?"} 
File: bin/trackmesplkoutlierstrain.py
562Insecure HTTP Connection found Match: requests.get Positional arguments, ["entity_outlier"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1740Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_conf"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_dsm_user.py
661Insecure HTTP Connection found Match: requests.get Positional arguments, ["data_sampling_obfuscation"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3711Insecure HTTP Connection found Match: requests.get Positional arguments, ["ack_state", "inactive"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2275Insecure HTTP Connection found Match: requests.get Positional arguments, ["sharing"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
5394Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_format", "html"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
3025Insecure HTTP Connection found Match: requests.get Positional arguments, ["/"]; Keyword arguments, {"verify": "?", "timeout": "?"} 
File: lib/trackme_libs_topology_alerts_email.py
508Insecure HTTP Connection found Match: requests.get Positional arguments, ["allowed_email_domains"]; Keyword arguments, {} 
File: bin/trackmesplkoutlierstrain.py
561Insecure HTTP Connection found Match: requests.get Positional arguments, ["entities_outliers"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
300Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_mode", "inspect"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3451Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_static_incident_subject", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
13267Insecure HTTP Connection found Match: requests.get Positional arguments, ["earliest"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
305Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["ai_components_advisor_max_runtime_sec", "?"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
1026Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_conf", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
12843Insecure HTTP Connection found Match: requests.get Positional arguments, ["tracker_report"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
4250Insecure HTTP Connection found Match: requests.get Positional arguments, ["splk_outliers_detection", "?"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1778Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_audit_idx", "trackme_audit"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_dsm_user.py
375Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
347Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_summary_idx", "trackme_summary"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
152Insecure HTTP Connection found Match: requests.post Positional arguments, ["/servicesNS/nobody/trackme/storage/collections/data/kv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenantskv_trackme_virtual_tenants"]; Keyword arguments, {"headers": "?", "data": "?", "verify": "?", "timeout": "?"} 
File: lib/trackme_libs_server_identity.py
238Insecure HTTP Connection found Match: requests.get Positional arguments, ["/services/server/info"]; Keyword arguments, {"headers": "?", "params": "?", "verify": "?", "timeout": "?"} 
File: bin/trackme_rest_handler_vtenants_admin.py
13268Insecure HTTP Connection found Match: requests.get Positional arguments, ["latest"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2230Insecure HTTP Connection found Match: requests.get Positional arguments, ["owner"]; Keyword arguments, {} 
File: lib/trackme_libs_topology_alerts_email.py
515Insecure HTTP Connection found Match: requests.get Positional arguments, ["email_format"]; Keyword arguments, {} 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3503Insecure HTTP Connection found Match: requests.get Positional arguments, ["allowed_email_domains", "?"]; Keyword arguments, {} 
File: bin/trackmesplktags.py
134Insecure HTTP Connection found Match: requests.get Positional arguments, ["central_kvcollection_mode", "search_mode"]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
167Insecure HTTP Connection found Match: requests.get Positional arguments, ["object"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1788Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["adaptive_delay", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_get_data.py
163Insecure HTTP Connection found Match: requests.get Positional arguments, ["_key"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
13265Insecure HTTP Connection found Match: requests.get Positional arguments, ["tracker_report"]; Keyword arguments, {} 
File: bin/trackmesplksoarlookup.py
181Insecure HTTP Connection found Match: requests.get Positional arguments, ["response"]; Keyword arguments, {} 
File: bin/trackmetrackerhealth.py
2177Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_list", "dsm,dhm,mhm,flx,fqm,wlk"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2311Insecure HTTP Connection found Match: requests.get Positional arguments, ["owner"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1788Insecure HTTP Connection found Match: requests.get Positional arguments, ["adaptive_delay", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_configuration.py
2099Insecure HTTP Connection found Match: requests.get Positional arguments, ["owner"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
12845Insecure HTTP Connection found Match: requests.get Positional arguments, ["earliest"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_fqm_power.py
3348Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackers", "?"]; Keyword arguments, {} 
File: lib/trackme_libs_topology_alerts_email.py
516Insecure HTTP Connection found Match: requests.get Positional arguments, ["environment_name"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1778Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_audit_idx", "trackme_audit"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
216Insecure HTTP Connection found Match: requests.get Positional arguments, ["splk_outliers_detection", "?"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1779Insecure HTTP Connection found Match: requests.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
13266Insecure HTTP Connection found Match: requests.get Positional arguments, ["tracker_name"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1779Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx", "trackme_metrics"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
196Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_enabled", "?"]; Keyword arguments, {} 
File: bin/trackmesplkadaptivedelay.py
1794Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["adaptive_delay_notes", "?"]; Keyword arguments, {} 
File: bin/trackmesplkfeedlifecycleadvisorhelper.py
305Insecure HTTP Connection found Match: requests.get Positional arguments, ["ai_components_advisor_max_runtime_sec", "?"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
4971Insecure HTTP Connection found Match: requests.Session.get Positional arguments, ["trackme_metric_idx"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_vtenants_admin.py
12846Insecure HTTP Connection found Match: requests.get Positional arguments, ["latest"]; Keyword arguments, {} 
File: bin/trackme_rest_handler_splk_outliers_engine_power.py
2973Insecure HTTP Connection found Match: requests.get Positional arguments, ["splk_outliers_detection", "?"]; Keyword arguments, {} 
[
success
]
check_for_sensitive_info_in_url
Check for sensitive information being exposed in transit via URL query string parameters
[
warning
]
check_for_supported_tls
Check that all outgoing connections use TLS in accordance to Splunk Cloud Platform policy.
File: bin/trackme_rest_handler_vtenants_admin.py
20936Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
84Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
Suppressed 367 warning messages
File: bin/trackme_rest_handler_vtenants_admin.py
22159Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21077Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21582Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
152Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutliersrender.py
314Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmegetkos.py
121Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21489Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
953Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
13209Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
182Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
13132Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_dsm_user.py
567Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmegetcoll.py
458Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
12710Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_variable_delay_power.py
1059Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21848Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
250Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
342Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21238Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
12787Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1834Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_policies_apply.py
207Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_dhm_user.py
568Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmedecisionmaker.py
237Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
216Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1529Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3295Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
54Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1278Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
20522Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
1520Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/splunktaucclib/legacy/rest.py
61Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1683Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1801Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
114Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21331Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkfqmparse.py
303Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_mhm_power.py
755Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutliersrender.py
352Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkfeedsdelayedinspector.py
699Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkadaptivedelay.py
1639Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_audit.py
95Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_maintenance.py
212Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
22338Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1040Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
13067Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_get_data.py
1046Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
6247Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_schema.py
391Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_server_identity.py
238Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
20628Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_wlk_power.py
683Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_describe_vtenants.py
230Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_maintenance.py
1041Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
22635Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_topology_alerts_email.py
419Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_load.py
1847Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
147Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_outliers_engine_user.py
1228Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_topology_alerts_scheduling.py
72Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
21920Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_dsm_power.py
1796Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3493Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkwlkinactiveinspector.py
227Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
20756Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_maintenance.py
857Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutlierstrain.py
234Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/solnlib/rest.py
58Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
22569Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
284Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_dsm_user.py
650Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_fqm_power.py
3339Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
20836Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_topology_references.py
359Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1316Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_load.py
1220Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkwlkinactiveinspector.py
154Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1337Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1083Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1445Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3693Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_fqm_power.py
684Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
2921Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutliersrender.py
215Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutlierstrain.py
534Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3193Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1352Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_topology_alerts_scheduling.py
239Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_admin.py
4931Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmeguardianrunchecks.py
145Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme/modalert_trackme_stateful_alert_helper.py
3213Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_splk_flx_power.py
687Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmetrackerhealth.py
795Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_rbac.py
54Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackmesplkoutliersrender.py
1830Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: lib/trackme_libs_licensing.py
1237Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 
File: bin/trackme_rest_handler_vtenants_user.py
1650Ensure that the SSL certificate validation for communications with outside the Splunk Cloud stack is enabled. This can be done by specifying the relevant parameters (verify, cafile etc) to True or the certificate path. 

Source code and binaries standards

[
success
]
check_for_bin_files
Check that files outside the bin/ and appserver/controllers directory do not have execute permissions. Splunk Cloud is a Linux-based platform, Splunk recommends 644 for all app files outside the bin/ directory, 644 for scripts within the bin/ directory that are invoked using an interpreter (e.g. python my_script.py or sh my_script.sh), and 755 for scripts within the bin/ directory that are invoked directly (e.g. ./my_script.sh or ./my_script).

Universal Configuration Console standards

[
success
]
check_for_ucc_framework_version
Check UCC framework version.
[
warning
]
check_ucc_dependencies
Check UCC dependencies versions.
File: lib/solnlib/__init__.py
58Detected solnlib (version 8.1.1). No action required. 
File: lib/splunktaucclib/__init__.py
17Detected splunktaucclib (version 8.2.0). No action required. 

XML file standards

[
success
]
check_that_all_xml_files_are_well_formed
Check that all XML files are well-formed.