Open jspeed-meyers opened 3 months ago
The results of Scorecard for this repo can be viewed in a UI here.
One of the low-hanging fruit appears to be adding a SECURITY.md file. I've done that in PR #195. Feedback welcome.
https://github.com/stacklok/frizbee could could be useful for pinning the versions of the GitHub Actions.
These is now a Scorecard score on the README. I'd be curious to run the tool on this repo and assess what the different sub-scores are. Additionally, I'd be curious if there is anything this project could do to improve the scores and, finally, if any of those possible actions are "worth" it.