jupyter / jupyter/security

Learning about SLSA and considering action points

Open
#105 1 comment 0 reactions 0 assignees View on GitHub
Dominant language
Jupyter Notebook
Stars
27
Forks
12
Avg merge
3d 5h
Merged PRs (30d)
3

Description

Below is a quote from the Developing Secure Software course. It seems like SLSA could provide input on some low hanging fruit we could work systematically towards:

> Supply chain Levels for Software Artifacts, or SLSA ("salsa"), is a security framework being developed as a checklist of standards and controls to prevent tampering, improve integrity, and secure packages and infrastructure. At the time of this writing it is still in development, but you should consider its recommendations. SLSA is being developed under the Open Source Security Foundation (OpenSSF). To learn more, see the [SLSA home page](https://slsa.dev/).

Has anyone read through this?

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.