<div>James,</div>
<div> </div>
<div>Considering that the majority of the individuals and organizations that have created the OpenID libraries do not have access to vast sums of cash to pay for these applications or services, do you recommend any analysis software that is low cost or free?</div>
<div> </div>
<div>Thanks,</div>
<div> </div>
<div>John</div>
<div><a href="http://extremeswank.com">extremeswank.com</a><br><br> </div>
<div><span class="gmail_quote">On 2/26/08, <b class="gmail_sendername">McGovern, James F (HTSC, IT)</b> <<a href="mailto:James.McGovern@thehartford.com">James.McGovern@thehartford.com</a>> wrote:</span>
<blockquote class="gmail_quote" style="PADDING-LEFT: 1ex; MARGIN: 0px 0px 0px 0.8ex; BORDER-LEFT: #ccc 1px solid">I would be curious to know if the implementers of the various OpenID<br>libraries have used tools such as Ounce Labs (<a href="http://www.ouncelabs.com">www.ouncelabs.com</a>),<br>
Coverity (<a href="http://www.coverity.com">www.coverity.com</a>) and others to ensure that the OWASP Top Ten<br>(<a href="http://www.owasp.org">www.owasp.org</a>) doesn't occur?<br><br><br>*************************************************************************<br>
This communication, including attachments, is<br>for the exclusive use of addressee and may contain proprietary,<br>confidential and/or privileged information. If you are not the intended<br>recipient, any use, copying, disclosure, dissemination or distribution is<br>
strictly prohibited. If you are not the intended recipient, please notify<br>the sender immediately by return e-mail, delete this communication and<br>destroy all copies.<br>*************************************************************************<br>
<br>_______________________________________________<br>specs mailing list<br><a href="mailto:specs@openid.net">specs@openid.net</a><br><a href="http://openid.net/mailman/listinfo/specs">http://openid.net/mailman/listinfo/specs</a><br>
</blockquote></div><br>