Skip to content

Other best practices - Linux Foundation #205

@mgifford

Description

@mgifford

It would be interesting to align with other best practices, such as the ones that the Linux Foundation is building. Software Bill of Materials (SBOM) come mind https://openssf.org/technical-initiatives/sbom-tools/

Understanding the packages which make up a Certified DPG is a good practice. Use of this scorecard could be useful too:
https://openssf.org/projects/scorecard/

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions