遵循以下最佳实践的项目将能够自愿的自我认证,并显示他们已经实现了核心基础设施计划(OpenSSF)徽章。 显示详细资料
[](https://www.bestpractices.dev/projects/133)
<a href="https://www.bestpractices.dev/projects/133"><img src="https://www.bestpractices.dev/projects/133/badge"></a>
SECURE CODING STARTS HERE.
PROJECTS Create projects in SKF and start gathering requirements for your features/sprints
CODE EXAMPLES An extensive library of common hacks, exploits, and best practices. Learn the hacker mindset and keep your project secure..
CHECKLISTS Out of the box SKF comes with ASVS and MASVS included.
LABS Train your hacking skills with over 50+ interactive labs that you can run locally or trough the SKF UI in your Kubernetes cluster.
KNOWLEDGE BASE All requirements are correlated to knowledgebase items to give you more in depth information about attack vectors, impact, mitigation and best practices.
USER MANAGEMENT Manage your users by adding linking SKF to your favourite OIDC provider
DESIGN PATTERNS We included the most used user-stories in SKF to get your team get started quickly implementing ASVS in your projects.
SUPPORT Find us on our Gitter channel to ask us anything about SKF and how to get yourself started. https://gitter.im/Security-Knowledge-Framework/Lobby
Repository on GitHub, which uses git. git is distributed.
We use Travis to enforce this
警告:需要URL,但找不到URL。
https://github.com/blabla1337/skf-flask/blob/main/CONTRIBUTING.md
https://travis-ci.org/blabla1337/skf-flask
All Secure and HTTPS
PFS only!
We set all the 4 security headers
警告:需要更长的理由。
The application can easily be tested without the need of this option
后退