-
Notifications
You must be signed in to change notification settings - Fork 156
Open
Labels
Milestone
Description
Please add an optional field to declare the country or region(s) of origin or where the software as made. The value may be an array of ISO country codes.
Some countries may legally require vendors to add backdoors, weaknesses and vulnerabilities (see recent news from Southern Hemisphere). Identifying software originating from such countries enables closer scrutiny or taking additional precautionary steps. Though one should taking this information with a grain of salt and scrutinize every package prior to use for backdoors and vulnerabilities regardless of region of origin. Having this field may allow some automation in prioritization or policy enforcement.
Reactions are currently unavailable