A followup questions, since many of the answers indicate that
people do in fact want to review the sourcees for critical software.
If you do such review, what do you look for? Are you looking
for trojans? Checking coding style for general quality? Understanding
the underlying algorithms? Doing line-by-line inspections for
correctness?
I'm attempting to get a grip on what people get from the source,
so I can have a whack at formulating a response that actually addresses
the issues.
Andrew
Follow-Ups:
|
|