You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
# OSPS-LE-03: LICENSE or COPYING files are available available
56
-
- name: osps-le-03
57
-
type: osps-le-03
55
+
# OSPS-LE-03.01: LICENSE or COPYING files are available in repo
56
+
- name: osps-le-03-01
57
+
type: osps-le-03-01
58
58
def: {}
59
59
60
-
# OSPS-QA-01: Repository visibility check
61
-
- name: osps-qa-01
62
-
type: osps-qa-01
63
-
def: {}
64
-
# OSPS-QA-02: Maintain publicly readable change history
65
-
- name: osps-qa-02
66
-
type: osps-qa-02
67
-
def: {}
60
+
# OSPS-QA-01.01: Repository visibility check
61
+
- name: osps-qa-01-01
62
+
type: osps-qa-01-01
63
+
def: {}
64
+
# OSPS-QA-01.02: Maintain publicly readable change history
65
+
- name: osps-qa-01-02
66
+
type: osps-qa-01-02
67
+
def: {}
68
+
# OSPS-QA-02.01: Source code contains direct dependency list
69
+
- name: osps-qa-02-01
70
+
type: osps-qa-02-01
71
+
def: {}
72
+
73
+
## TODO: QA-04.01: While active, the project documentation MUST contain a list of any codebases that are considered subprojects or additional repositories.
68
74
69
-
# OSPS-VM-05: Check for SECURITY.md or GitHub private vulnerability reporting
70
-
- name: osps-vm-05
71
-
type: osps-vm-05
75
+
# OSPS-QA-05.01: While active, the version control system MUST NOT contain generated executable artifacts.
76
+
- name: osps-qa-05-01
77
+
type: osps-qa-05-01
78
+
def: {}
79
+
80
+
# OSPS-VM-02.01: Documentation must contain security contacts
81
+
- name: osps-vm-02-01
82
+
type: osps-vm-02-01
72
83
def: {}
73
84
release:
74
-
# OSPS-BR-09: Released software assets are delivered using HTTPS
75
-
- name: osps-br-09
76
-
type: osps-br-09
85
+
# OSPS-LE-02.02: Ensure OSI/FSF approved license on assets
86
+
- name: osps-le-02-02
87
+
type: osps-le-02-02
77
88
def: {}
78
-
79
-
# OSPS-LE-04: Check release assets for valid license
80
-
- name: osps-le-04
81
-
type: osps-le-04
89
+
# OSPS-LE-03.02: LICENSE or COPYING files are available in assets
0 commit comments