coreinfrastructure / best-practices-badgeLinks
🏆Open Source Security Foundation (OpenSSF) Best Practices Badge (formerly Core Infrastructure Initiative (CII) Best Practices Badge)
☆1,309Updated this week
Alternatives and similar repositories for best-practices-badge
Users that are interested in best-practices-badge are comparing it to the libraries listed below
Sorting:
- Fast, portable and reliable dependency analysis for any codebase. Supports license & vulnerability scanning for large monoliths. Langua …☆1,456Updated this week
- Now stored here:☆407Updated 5 years ago
- Python reference implementation of The Update Framework (TUF)☆1,693Updated this week
- Tern is a software composition analysis tool and Python library that generates a Software Bill of Materials for container images and Dock…☆1,010Updated last year
- The Open Source Discovery Service☆1,142Updated 2 months ago
- a community wiki for improving code quality☆348Updated last week
- Repolinter, The Open Source Repository Linter☆462Updated 2 weeks ago
- The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for ope…☆977Updated this week
- Curated list of awesome tools for managing open source programs☆491Updated last month
- A Ruby Gem to detect under what license a project is distributed.☆867Updated 2 weeks ago
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆467Updated this week
- These patterns document how to apply open source principles and practices for software development within the confines of an organization…☆838Updated last month
- Notary is a project that allows anyone to have trust over arbitrary collections of data☆3,284Updated last year
- Helping allocate resources to secure the critical open source projects we all depend on.☆381Updated 8 months ago
- Mozilla HTTP Observatory☆1,851Updated last year
- GitHub App that enforces the Developer Certificate of Origin (DCO) on Pull Requests☆331Updated last month
- A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby☆944Updated last week
- Supply-chain Levels for Software Artifacts☆1,783Updated 2 weeks ago
- An observatory for TLS configurations, X509 certificates, and more.☆541Updated 3 months ago
- Open Source Policy Examples and Templates☆192Updated 2 years ago
- Gives criticality score for an open source project☆1,416Updated last month
- The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.☆351Updated last week
- Official TODO Website that contains TODO Guides, OSPO use cases and more resources to advance in the OSPO journey☆265Updated this week
- Artifact Metadata API☆1,562Updated last month
- Memorable site for testing clients against bad SSL configs.☆2,978Updated last year
- Distributed code review system for Git repos☆5,279Updated 2 years ago
- a ruggedization framework that embodies the principle "be mean to your code"☆995Updated 3 years ago
- LGTM is a simple pull request approval system [ARCHIVE]☆990Updated 7 years ago
- Public version of PagerDuty's employee security training courses.☆414Updated 2 years ago
- Find licenses for your project's dependencies.☆1,783Updated last year