MISP-modules and PAP:RED
Nobody has claimed this yet.
- Dominant language
- Python
- Stars
- 377
- Forks
- 280
- Avg merge
- 2d 2h
- Merged PRs (30d)
- 10
Description
PAP - permissible actions protocol - defines what can be done with the information.
Events, Attributes, Objects marked as PAP:RED should never be expanded automatically on-hover.
Also each expansion module in MISP-modules should have a way to mark the expansion source being internal or external, so that PAP:RED can be followed.
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start by reviewing the expansion modules in this repository and how MISP handles Events, Attributes, and Objects marked PAP:RED. Trace the existing automatic on-hover expansion behavior and module output metadata. Done means PAP:RED information is not automatically expanded and every expansion module can identify whether its source is internal or external.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- python
- Domain
- security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100