---
title: "A backdoored coding assignment: safely reviewing an untrusted repository"
description: "How can you analyze a suspicious coding assignment without running untrusted code?"
status: "coming-soon"
language: "en"
canonical: "https://bulnik.dev/en/articles/topics/T49.11/"
topicId: "T49.11"
---

> Coming soon — this article is being prepared. Below are its question, intended outcome, and place in the story.

## The question

How can you analyze a suspicious coding assignment without running untrusted code?

## What we will work through

Analyze a suspicious coding assignment without running untrusted code.

## Before you begin

Previously covered: SBOMs and dependency provenance.

- [SBOMs and dependency provenance](/en/articles/topics/T49.09/)
