kserve / kserve/community

[Required] Improve security self-assessment doc

Open
#44 10 comments 0 reactions 1 assignee Claimed by @spolti View on GitHub
cncf-incubation
Dominant language
Python
Stars
17
Forks
10
Avg merge
1h 36m
Merged PRs (30d)
1

Description

From CNCF TOC:

> KServe Security Self Assessment is available at https://github.com/kserve/community/blob/main/security/self-assessment.md.

**TODO for KServe Team:**

1. Link to the CI/CD generated SBOMs at https://github.com/kserve/community/blob/main/security/self-assessment.md#software-bill-of-materials
2. Clarify if the generated docker images are scanned for security vulnerabilities at https://github.com/kserve/community/blob/main/security/self-assessment.md#development-pipeline
3. CONTRIBUTING.md should also include information about how to report security vulnerabilties at https://github.com/kserve/community/blob/main/security/self-assessment.md#development-pipeline

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.