遵循以下最佳实践的项目将能够自愿的自我认证,并显示他们已经实现了核心基础设施计划(OpenSSF)徽章。 显示详细资料
[](https://www.bestpractices.dev/projects/2820)
<a href="https://www.bestpractices.dev/projects/2820"><img src="https://www.bestpractices.dev/projects/2820/badge"></a>
manages plain text issues with git or mercurial
Governance is described in: https://github.com/grantbow/fit/blob/master/docs/FAQ.md.
There are five contributors listed https://github.com/grantbow/fit showing at least two significant contributors.
Status of this is being tracked at https://github.com/grantbow/fit/tree/master/fit/copyright
Repository on GitHub, which uses git. git is distributed.
New or casual contributor small tasks are clearly identified in https://github.com/grantbow/fit/blob/master/CONTRIBUTING.md
Two-factor authentication (2FA) is required by github.com for changing the central repository or accessing sensitive data.
Code review requirements, how reviews are conducted and what must be checked are described https://github.com/grantbow/fit/blob/master/CONTRIBUTING.md
All Proposed modifications will be reviewed before and after release by people other than the author. https://github.com/grantbow/fit/blob/master/CONTRIBUTING.md
Automated builds are tracked https://app.travis-ci.com/github/grantbow/fit and performed on each commit
https://github.com/grantbow/bug/blob/master/test/test.sh
Results of continuous tests, builds and integration status are shown https://app.travis-ci.com/github/grantbow/fit
Statement coverage is at 50% so far. coverage progress is being tracked https://app.codecov.io/gh/grantbow/fit
Branch coverage is being tracked https://app.codecov.io/gh/grantbow/fit
Github has security hardening headers added. https://securityheaders.com/?q=https%3A%2F%2Fgithub.com%2Fgrantbow%2Ffit&followRedirects=on
A security review needs to be performed. The status is being tracked https://github.com/grantbow/fit/blob/master/fit/security_review/Description
Hardening mechanisms are not needed.
Dynamic analysis tools are being run for each commit https://app.travis-ci.com/github/grantbow/fit and https://app.codecov.io/gh/grantbow/fit
Dynamic analysis tools check test outputs during each commit build which perform many run-time assertions around the software and inside the software for each commit. https://app.travis-ci.com/github/grantbow/fit
后退