bmarsh9 / gapps

Security compliance platform - SOC2, CMMC, ASVS, ISO27001, HIPAA, NIST CSF, NIST 800-53, CSC CIS 18, PCI DSS, SSF tracking. https://gapps.darkbanner.com
Other
440 stars 99 forks source link

Implementation levels #16

Closed Vijayragha1 closed 1 year ago

Vijayragha1 commented 1 year ago

Instead of percentage wouldn't it better to add not implemented - partially implemented - implemented. 🤔🤔 or am i missing something?

bmarsh9 commented 1 year ago

Are you talking about the progress bar displaying how much of the control is implemented?

Vijayragha1 commented 1 year ago

yep

bmarsh9 commented 1 year ago

This is more of a UI thing. Internally, the percentage maps to partially, mostly implemented, fully implemented. See the screenshot below where the percentage is at 75% and the label is "Mostly Implemented". This was mostly done to make it easier if one framework had 3 levels of implementation (such as SOC2) and another framework used more/less.

c10
Vijayragha1 commented 1 year ago

Ahh i see.