It's about 1/2 hour work to fill out the badge. If for any reason we are missing some criteria, please report them back on the finos-fdc3-maintainers slack channel and we can discuss how to close the gaps.
@robmoffat is this done and closeable now? I believe we're @ 99% because we don't use code coverage testing, and the security scanning is yet to be enabled. Perhaps wait for the latter to be done?
FINOS has a policy of adopting OpenSSF for it's major / strategic projects.
The way this works is, you fill out a questionnaire here (https://bestpractices.coreinfrastructure.org/en) and you get given a badge to add to your project, just like Spring Bot has done.
It's about 1/2 hour work to fill out the badge. If for any reason we are missing some criteria, please report them back on the finos-fdc3-maintainers slack channel and we can discuss how to close the gaps.
thanks!