OWASP / OWASP/SecurityShepherd

Build ASVS lessons

Open
#267 1 comment 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Enhancement Good First Issue Levels
Dominant language
Java
Stars
1.5k
Forks
515
Avg merge
3h 46m
Merged PRs (30d)
1

Description

I used Security Shepherd for the first time in a class last week, and in open floor mode, I found a few things. The first and foremost is that we don't have a lot of coverage of all ASVS Level 1 items.

Can we use this task to work out a list of what is present, and create a priority list of lessons to be built, and I will help you build those lessons.

I will create other issues for things that didn't go well.

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start by reviewing the existing Security Shepherd lessons and mapping them against all ASVS Level 1 items. Produce a list of covered items and a prioritized list of missing lessons; completion means the coverage inventory and priorities are documented for follow-up implementation.

Written by the indexing model from the issue text.

Assessment

Tech stack
java
Domain
content, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
20/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.