OWASP / Software-Component-Verification-Standard

Software Component Verification Standard (SCVS)
https://owasp.org/scvs
Creative Commons Attribution Share Alike 4.0 International
135 stars 39 forks source link

Clarify how levels build on each other #15

Closed garretfick closed 4 years ago

garretfick commented 4 years ago

The current wording has "depth". I think we can be more precise by saying that levels add controls.

I also suggest to remove the word "security" as the preface defines the scope to be about "risk".