Learning about SLSA and considering action points
- Dominant language
- Jupyter Notebook
- Stars
- 27
- Forks
- 12
- Avg merge
- 3d 5h
- Merged PRs (30d)
- 3
Description
Below is a quote from the Developing Secure Software course. It seems like SLSA could provide input on some low hanging fruit we could work systematically towards:
> Supply chain Levels for Software Artifacts, or SLSA ("salsa"), is a security framework being developed as a checklist of standards and controls to prevent tampering, improve integrity, and secure packages and infrastructure. At the time of this writing it is still in development, but you should consider its recommendations. SLSA is being developed under the Open Source Security Foundation (OpenSSF). To learn more, see the [SLSA home page](https://slsa.dev/).
Has anyone read through this?
Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.