ossf / s2c2f

The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously improve the S2C2F guide which outlines and defines how to securely consume Open Source Software (OSS) dependencies into the developer’s workflow.
Other
175 stars 23 forks source link

Create Folder in Repo for capturing Implementation Guidance in Markdown #3

Closed adriandiglio closed 1 year ago

adriandiglio commented 1 year ago

In previous meetings, we were using Google Docs for capturing implementation guidance for each CI/CD solution (GitHub, GitLab, etc.) about using native solutions to help accomplish the S2C2F requirements. It was suggested to us to capture these in Markdown and store them in an easy find location within the repo

adriandiglio commented 1 year ago

Done. https://github.com/ossf/s2c2f/tree/main/Reference_implementation