Skip to content

Conversation

6mile
Copy link
Contributor

@6mile 6mile commented Jun 10, 2025

Added the CHARTER.md file to start the Malicious Packages upgrade to full OSSF project


## 1. Mission and Scope of the Project

- a. The mission of the Project is to collect into one centralized repository malicious packages published to the NPM, PyPI, RubyGems, Nuget, Maven, Go and Crates.io software registries. This project will act as a singular place for security researchers and vendors to publish malicious packages they find.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can you make the language less specific to a set of ecosystems.

For example "... published to open source package registries, like NPM, PyPI, RubyGems, etc."

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants