| CPC G06F 21/565 (2013.01) [G06F 8/60 (2013.01); G06F 2221/033 (2013.01)] | 30 Claims |

|
1. A computer-implemented method comprising:
detecting, by one or more processors, an update of an application package on a data platform in a provider account, the provider account providing content to the data platform, the application package comprising a set of files for deployment on the data platform for use by a consumer of data services on the data platform;
copying, by the one or more processors, the set of files of the application package into a temporary outbound datastore of a scanner account;
adding, by the one or more processors, metadata to the application package, the metadata comprising a scan property status for each version and patch of the application package;
performing, by the one or more processors, a review of the set of files in the temporary outbound datastore based on the scan property status of the metadata, the review to detect malicious content based on a set of analysis rules; and
generating, by the one or more processors, a deployment decision for the application package for deployment from the provider account onto the data platform based on a result of the review.
|