-
As part of the OpenSSF Best Practices badges, we must monitor and periodically verify that none of the project dependencies contain known vulnerabilities. We also need to have the dependencies in a ma…
-
As part of the OpenSSF Best Practices badges, we need to add at least one SAST (Static Application Security Testing) tool.
We could take a look at https://semgrep.dev/ which provide both a free and "…
-
Related: https://stackoverflow.com/questions/68704002/importerror-cannot-import-name-abcindexclass-from-pandas-core-dtypes-generic
```python
-------------------------------------------------------…
-
https://bestpractices.coreinfrastructure.org/en
Aim for Gold :)
-
I recently achieved 100% for my project, but the badge continues to say 99%. I've tried clearing cache and cookies, so I think it's something server side? Perhaps it's run on a schedule?
![BadgeA…
-
The openSSF maintains a list of best practices for open source projects - see https://bestpractices.coreinfrastructure.org/en
Egeria currently passes CII Bronze level
Egeria should aim for Silve…
-
This issue shall track our progress towards the [OpenSSF Best Practices](https://www.bestpractices.dev/en), a requirement for increasing project maturity.
The criteria are available here: https://w…
-
Hi,
I don't know why but sometimes the PMD don't want to read the ruleset file and try to verify all rules.
The only way that i found to fix that is switching git branch to a branch with differe…
-
### Bug description
In a blog where one of the post has this badge
```
[![OpenSSF Best Practices](https://bestpractices.coreinfrastructure.org/projects/1882/badge)](https://bestpractices.coreinfr…
-
[![CII Best Practices](https://bestpractices.coreinfrastructure.org/projects/237/badge)](https://bestpractices.coreinfrastructure.org/projects/237)
Refer to: https://twit.tv/shows/floss-weekly/episod…