Explanation

This rule detects if exposed flows have roles set to them. This in order to require users to have to login in the application. In case of DCM application where exposed flows are mapped to process tasks, the combination of task, flow and role is checked.

Possible improvements

Set a role to the Exposed flow.

Example

For this flow 'ExposedFlowWithoutRole' no role was assigned and the flow was set as exposed.

This results in the following issue: