# Is your team on the \*security\* naughty or nice list?

DevFeed: [Is your team on the \*security\* naughty or nice list?](<https://devfeed.tech/articles/is-your-team-on-the-security-naughty-or-nice-list-8090.md>)

Original publisher: [Read original article](<https://snyk.io/blog/security-naughty-or-nice-list/>)

Author: Mariah Gresham

Published: 2023-12-20T17:00:00Z

Content type: opinion

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [Application Security](<https://devfeed.tech/topics/application-security.md>), [CI/CD](<https://devfeed.tech/topics/cicd.md>), [AI-assisted coding](<https://devfeed.tech/topics/ai-assisted-coding.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-coding](<https://devfeed.tech/tags/ai-coding.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [aspm](<https://devfeed.tech/tags/aspm.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ci-cd](<https://devfeed.tech/tags/ci-cd.md>), [code-security](<https://devfeed.tech/tags/code-security.md>), [megawatt](<https://devfeed.tech/tags/megawatt.md>), [open-source-security](<https://devfeed.tech/tags/open-source-security.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk-platform](<https://devfeed.tech/tags/snyk-platform.md>)

## AI overview

A holiday-themed checklist urges teams to take a holistic, risk-based approach to application security, embed security in CI/CD, and avoid assuming AI-generated code is secure.

## Source excerpt

This holiday season is a good time to ask the same question in a different context: are your organization's practices with AI, application security tooling, and other security-related practices putting you on the security naughty or nice list this year?