-
Notifications
You must be signed in to change notification settings - Fork 74
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Security and Compliance Category #172
Comments
I would suggest adding "Dependency management" category that IMHO includes both dependency analysis (Whitesource & Co) and update automation (e.g. Dependabot, UpdateCLI) |
Point to the OpenSSF landscape as a embedded landscape link. This will enable us to have the OpenSSF maintain the landscape for this category. |
From landscape wg meeting 12.11.21, we will keep current devsecops category on cdf landscape, as well as future linking to OpenSSF landscape. PRs welcome to augment devsecops category |
Update, with the changes to Observability and Analysis category (see #203), the DevSecOps category will appear like this: 📣 The Security / DevSecOps category could use a good deal of augmentation. ✍️ Please add specific suggestions to this issue of additional projects / subcategories to add, etc |
###Category request:
The CDF landscape should have a security and compliance category for projects such as OPA.
The text was updated successfully, but these errors were encountered: