18F / vulnerability-disclosure-policyLinks
The vulnerability disclosure policy for 18F and GSA's Technology Transformation Service.
☆26Updated 4 years ago
Alternatives and similar repositories for vulnerability-disclosure-policy
Users that are interested in vulnerability-disclosure-policy are comparing it to the libraries listed below
Sorting:
- Guidelines, principles published on https://infosec.mozilla.org☆99Updated last month
- Notes and reference for ongoing forecasting.☆16Updated 3 years ago
- Security Education Companion☆40Updated 2 years ago
- This is the old location for the PIV Playbook. New location below.☆72Updated 4 years ago
- INACTIVE - Collection of Tools & Procedures for double checking GitHub configurations☆137Updated last year
- X.509 certificate linter☆157Updated 5 years ago
- An automated scanner and web dashboard for tracking TLS deployment across news organizations☆103Updated 3 years ago
- 2017 - 2018 Certificate Policy development and drafting for Federal Public Trust Device PKI.☆43Updated last year
- Repository for various tools around security☆41Updated last year
- cloud.gov security policies and procedures☆25Updated 3 months ago
- How the federal .gov domain space is doing at best practices and policies.☆95Updated 5 years ago
- INACTIVE - Some helper scripts to manage github orgs via API.☆34Updated 4 months ago
- This repository contains a sample script which can be used to enable security vulnerability alerts in all of the repositories in a given …☆80Updated 11 months ago
- WikiMo documentation (mainly the security space, but everyone's welcome to use this)☆66Updated last year
- An API for ssh_scan (https://github.com/mozilla/ssh_scan) and the backend API service for the Mozilla SSH Observatory (https://observator…☆32Updated 4 years ago
- A lightweight pipeline, locally or in Lambda, for scanning things like HTTPS, third party service use, and web accessibility.☆384Updated 4 years ago
- The Digital Standard is an ambitious, community-led effort to build a framework to test and rate products and services on the basis of pr…☆133Updated 3 years ago
- 🔒🔍 A Go package to scan sites against requirements for Chromium-maintained HSTS preload list.☆121Updated 3 months ago
- Some code to duct-tape an SSH agent to a Chrome extension that implements the chrome.certificateProvider API.☆17Updated 9 years ago
- ☆107Updated 2 years ago
- Tool to check X509 certificates☆73Updated 4 years ago
- Git module to prevent from committing sensitive information into the repository.☆43Updated 6 years ago
- CVE Automation Working Group☆174Updated this week
- Compliance automation for cloud.gov☆36Updated 3 months ago
- Documents for Mozilla's PKI policies - certificate root program, etc.☆55Updated 7 months ago
- Content-Security-Policy report aggregator/analyzer☆54Updated 5 years ago
- Jump to Full Encryption☆61Updated 8 years ago
- The CFPB's official Source Code Policy.☆39Updated 3 years ago
- A toolkit to generate an offline Chrome extension to detect phishing attacks using a bespoke convolutional neural network.☆132Updated 8 years ago
- Parse Content Security Policy headers, warn about policy errors, safely manipulate, render, and optimise policies☆72Updated last year