coreinfrastructure / best-practices-badge
🏆Open Source Security Foundation (OpenSSF) Best Practices Badge (formerly Core Infrastructure Initiative (CII) Best Practices Badge)
☆1,216Updated last week
Related projects ⓘ
Alternatives and complementary repositories for best-practices-badge
- Fast, portable and reliable dependency analysis for any codebase. Supports license & vulnerability scanning for large monoliths. Langua…☆1,291Updated this week
- Python reference implementation of The Update Framework (TUF)☆1,633Updated this week
- Now stored here:☆410Updated 3 years ago
- Tern is a software composition analysis tool and Python library that generates a Software Bill of Materials for container images and Dock…☆967Updated 8 months ago
- The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for ope…☆766Updated this week
- Proven approaches that can guide you through applying open source best practices within your organization☆744Updated 2 weeks ago
- A community version of the Open Decision Framework - A flexible, open approach to making decisions and leading projects☆805Updated 3 months ago
- Curated list of awesome tools for managing open source programs☆460Updated last year
- The Open Source Discovery Service☆1,118Updated this week
- 📜Automated review of open source software projects☆115Updated 6 months ago
- An implementation of the TLS/SSL protocols☆4,531Updated this week
- Repolinter, The Open Source Repository Linter☆428Updated 2 months ago
- Notary is a project that allows anyone to have trust over arbitrary collections of data☆3,235Updated 3 months ago
- a community wiki for improving code quality☆341Updated last month
- A system for distributing and managing secrets☆2,621Updated last year
- InSpec: Auditing and Testing Framework☆2,865Updated this week
- Validate links in awesome projects☆848Updated last year
- GitHub's employee intellectual property agreement, open sourced and reusable☆2,141Updated last year
- LGTM is a simple pull request approval system [ARCHIVE]☆988Updated 6 years ago
- A series of ebooks on Docker and the container ecosystem.☆847Updated 9 years ago
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆365Updated this week
- A stupid game for learning about containers, capabilities, and syscalls.☆898Updated last year
- Find licenses for your project's dependencies.☆1,734Updated 3 months ago
- A transparent and secure way to look up public keys.☆1,576Updated 3 years ago
- A brief tutorial on how to use Software Package Data Exchange (SPDX)☆127Updated 9 months ago
- The Update Framework specification☆371Updated 5 months ago
- Talks, blog posts, and interviews about the experience of being an open source maintainer☆1,126Updated 3 years ago
- Scripts to analyse large Git repositories.☆147Updated 5 years ago
- A Ruby Gem to detect under what license a project is distributed.☆795Updated this week
- A License Classifier☆315Updated 7 months ago