osquery / foundation

osquery Foundation Charter, Legal, and Process Documents
http://osquery.io
Other
12 stars 7 forks source link

Apply for Core Infrastructure Initiative #17

Open directionless opened 5 years ago

directionless commented 5 years ago

Community bridge requires we have a badge from Core Infrastructure Initiative https://www.coreinfrastructure.org/programs/badge-program/

directionless commented 5 years ago

I went through and created https://bestpractices.coreinfrastructure.org/en/projects/3125

It's worth having a couple more folks edit that. Especially looking through the silver or gold levels. There's a lot of random bits todo.

mike-myers-tob commented 5 years ago

Thanks for starting this! I just reviewed the answers provided so far.

For addressing the static analysis category, I think we are "Unmet" for these currently, but Alessandro opened https://github.com/osquery/osquery/issues/5728 and https://github.com/osquery/osquery/issues/5727

For dynamic analysis, we've recently opened a PR for Clang sanitizers, which would fulfill the requirement: https://github.com/osquery/osquery/pull/5628

mike-myers-tob commented 5 years ago

Regarding the silver badge criteria:

For what it's worth, we're tackling I8N issues right now for Python Software Foundation on a different project. Maybe what we learned there will be useful.

mike-myers-tob commented 5 years ago

Regarding the gold badge criteria:

alessandrogario commented 5 years ago

About the build system questions: the first three are all met now, while the last will be met when we merge the third-party-submodules PR (with the custom toolchain).

mike-myers-tob commented 5 years ago

We have applied for CII, and displayed the badge. https://github.com/osquery/osquery/pull/5744

What remains is incorporating the rest of the comments on this issue here into the answers on CII, and/or generating new issues for individual goals.

mike-myers-tob commented 3 years ago

Ok, I've marked off the silver badge requirement for having a Security Assurance doc 👍🏻

Internationalization would be the biggest remaining obstacle to having the Silver Badge.