Skip to content

Conversation

@maennchen
Copy link
Member

Changes

Implements a Security Insights File. See: https://github.com/ossf/security-insights-spec

Advantages

  • This allows scanners to automatically retrieve information mostly stored in text at the moment.
  • This allows to formally declare any certifications we do like OpenChain, Best Practices Badge and any possible future ones.
  • This allows to specify any identification (like Purl) to installations of elixir.

TODO

@maennchen
Copy link
Member Author

Deferred until required by attestations like Baseline.

@maennchen maennchen closed this Apr 15, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

1 participant