SharePoint Dragons

Nikander & Margriet on SharePoint

What about the Update-the-App loop hole?

One of the warnings we’re hearing a lot about Apps is the following: Apps that are submitted to the SharePoint Store, SharePoint Market Place (or whatever the final name will be), undergo a rigorous approval process. But, after granting an App Full Control, as long as the accompanying App manifest file doesn’t change, the App itself can change and start misbehaving on purpose after receiving an update.

Is this going to be a problem? In theory, yes. In reality, we don’t think so. Submitting Apps to the SharePoint Store will tie your company, or you personally, to that App. So, Apps starting to misbehave on purpose will definitely lead to immense legal claims. The SharePoint Store as a platform for hackers, we just don’t see it happening.

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s

%d bloggers like this: