open-telemetry / opentelemetry-js-contrib

OpenTelemetry instrumentation for JavaScript modules
https://opentelemetry.io
Apache License 2.0
685 stars 502 forks source link

[security] audit repository tooling #1751

Open arademm opened 11 months ago

arademm commented 11 months ago

The security SIG is looking to ensure that security tooling is setup consistently across the organization. As a result, we're asking maintainers to ensure the following tools are enabled in each repository:

Parent issue: https://github.com/open-telemetry/sig-security/issues/12

pichlermarc commented 4 days ago

I went through the list to double-check if we have everything set up here, opened one PR to align settings with recommendations:

@arademm looks like we can close this once https://github.com/open-telemetry/opentelemetry-js-contrib/pull/2461 merges, please let me know if there's anything else to take care of :slightly_smiling_face: