OpenChain-Project / Security-Assurance-Specification

Other
21 stars 7 forks source link

[Improvement] Include "mitigation" in Section 3.3.2 - Security Assurance #26

Closed shanecoughlan closed 1 year ago

shanecoughlan commented 1 year ago

Action

Mitigation was added to Section 3.3.2 - Security Assurance to ensure completeness, as remediation was mentioned in this section previously.

Old Language

3.3.2 - Security Assurance

New Language

3.3.2 - Security Assurance

Rationale

We previously talked said "document necessary remediation steps suitable for the use-case of the software" but did not talk about the alternative action of mitigation. To ensure completeness, this was added.

shanecoughlan commented 1 year ago

This issue is being closed as complete (for now). You can reopen it at any time to add new comments, ideas or concerns.