Currently the checker issues at our side 3x success ("type": 0) for requirements 8, 9 and 10 with following messages:
"Performed no in-depth test of security.txt."
"Since no valid provider-metadata.json was found, no extended check was performed."
"No check about contents from https://csaf.data.security.DOMAIN performed."
Each message on its own does not look to me like a "success".
Even more, as at least one of requirements 8-10 is required for the CSAF provider, it should somewhere be mentioned, that none of these checks was successful, but at least one is required.
Currently the checker issues at our side 3x success ("type": 0) for requirements 8, 9 and 10 with following messages:
"Performed no in-depth test of security.txt." "Since no valid provider-metadata.json was found, no extended check was performed." "No check about contents from https://csaf.data.security.DOMAIN performed."
Each message on its own does not look to me like a "success".
Even more, as at least one of requirements 8-10 is required for the CSAF provider, it should somewhere be mentioned, that none of these checks was successful, but at least one is required.