- Visitors can check out the Forum FAQ by clicking this link. You have to register before you can post: click the REGISTER link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. View our Forum Privacy Policy.
- Want to receive the latest contracting news and advice straight to your inbox? Sign up to the ContractorUK newsletter here. Every sign up will also be entered into a draw to WIN £100 Amazon vouchers!
Reply to: 3rd Party Code Review / Attestation
Collapse
You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
- You are not logged in. If you are already registered, fill in the form below to log in, or follow the "Sign Up" link to register a new account.
- You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
- If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
Logging in...
Previously on "3rd Party Code Review / Attestation"
Collapse
-
Could you tactfully prod the potential Client, as to which attesters are acceptable for them?
-
It's already distributed as compiled (Well, managed - .NET C#) - my issue is providing some kind of proof/evidence that it's safe.Originally posted by europetractor View PostIs all code uncompiled ? Add a compiled component that they cant break. You probably know better.
While code and ideas do get stolen, there is nothing to gain in not distributing your software.
Leave a comment:
-
Is all code uncompiled ? Add a compiled component that they cant break. You probably know better.Originally posted by vwdan View PostI think they're after paperwork, rather than an ongoing system. Either way, that can't happen because it needs to be able to work without internet connectivity and half of the software "ethos" is its fire and forget simplicity. It's all code signed so they can verify it's what I released, but I think they're after more than that.
While code and ideas do get stolen, there is nothing to gain in not distributing your software.
Leave a comment:
-
I think they're after paperwork, rather than an ongoing system. Either way, that can't happen because it needs to be able to work without internet connectivity and half of the software "ethos" is its fire and forget simplicity. It's all code signed so they can verify it's what I released, but I think they're after more than that.Originally posted by europetractor View PostImplement encrypted component with online verification whenever the app runs.
Leave a comment:
-
Implement encrypted component with online verification whenever the app runs.Originally posted by vwdan View PostMorning morning. As I've mentioned before, I've got a small Plan B which consists of a small, cheap and shockingly niche piece of of software. It's probably not going to make me rich unless someone desperately wants to own the rights, but now I've written it it's money for old rope really. It only has a couple of competitors in what it does, and no competitors in how it does it - hence why it sells.
Although I've sold into some fairly large companies before, including a FTSE100 financial institution, for the most part it's been considered "off the shelf" software. They test it, pay for it and that's that - I don't tend to hear much more from them.
I've now got a foreign arm of a very very big insurance firm interested but they're asking for code attestation and verification. I, unsurprisingly, do not have such things....
Which is why I'm here. Anyone had a similar request? What's the protocol - is it reasonable to agree, but state it's at their cost. What if it fails and can't pass for [Reasons]? How do I protect myself and my code?
I'm just after some general advice on where to go before I respond so I don't look stupid. I've only actually been asked once before, but they just wanted me to send my code to a company they'd engage (I actually refused at that point because I was scared for my IP, but I think that was short sighted)
Leave a comment:
-
3rd Party Code Review / Attestation
Morning morning. As I've mentioned before, I've got a small Plan B which consists of a small, cheap and shockingly niche piece of of software. It's probably not going to make me rich unless someone desperately wants to own the rights, but now I've written it it's money for old rope really. It only has a couple of competitors in what it does, and no competitors in how it does it - hence why it sells.
Although I've sold into some fairly large companies before, including a FTSE100 financial institution, for the most part it's been considered "off the shelf" software. They test it, pay for it and that's that - I don't tend to hear much more from them.
I've now got a foreign arm of a very very big insurance firm interested but they're asking for code attestation and verification. I, unsurprisingly, do not have such things....
Which is why I'm here. Anyone had a similar request? What's the protocol - is it reasonable to agree, but state it's at their cost. What if it fails and can't pass for [Reasons]? How do I protect myself and my code?
I'm just after some general advice on where to go before I respond so I don't look stupid. I've only actually been asked once before, but they just wanted me to send my code to a company they'd engage (I actually refused at that point because I was scared for my IP, but I think that was short sighted)Last edited by vwdan; 21 February 2017, 11:21.Tags: None
- Home
- News & Features
- First Timers
- IR35 / S660 / BN66
- Employee Benefit Trusts
- Agency Workers Regulations
- MSC Legislation
- Limited Companies
- Dividends
- Umbrella Company
- VAT / Flat Rate VAT
- Job News & Guides
- Money News & Guides
- Guide to Contracts
- Successful Contracting
- Contracting Overseas
- Contractor Calculators
- MVL
- Contractor Expenses
Advertisers
Contractor Services
CUK News
- Labour’s near-silence on its employment status shakeup is telling, and disappointing Today 07:47
- Business expenses: What IT contractors can and cannot claim from HMRC Jan 30 08:44
- April’s umbrella PAYE risk: how contractors’ end-clients are prepping Jan 29 05:45
- How EV tax changes of 2025-2028 add up for contractor limited company directors Jan 28 08:11
- Under the terms he was shackled by, Ray McCann’s Loan Charge Review probably is a fair resolution Jan 27 08:41
- Contractors, a £25million crackdown on rogue company directors is coming Jan 26 05:02
- How to run a contractor limited company — efficiently. Part one: software Jan 22 23:31
- Forget February as an MSC contractor seeking clarity, and maybe forget fairness altogether Jan 22 19:57
- What contractors should take from Honest Payroll Ltd’s failure Jan 21 07:05
- HMRC tax avoidance list ‘proves promoters’ nothing-to-lose mentality’ Jan 20 09:17

Leave a comment: