遵循以下最佳实践的项目将能够自愿的自我认证,并显示他们已经实现了核心基础设施计划(OpenSSF)徽章。 显示详细资料
[](https://www.bestpractices.dev/projects/3101)
<a href="https://www.bestpractices.dev/projects/3101"><img src="https://www.bestpractices.dev/projects/3101/badge"></a>
GemRB is a portable open-source implementation of Bioware's Infinity Engine.
Computed truck factor: 2 https://github.com/mtov/truck-factor
https://github.com/orgs/gemrb/people none of the people with credentials work together or even live in the same country. 3 people from that list would currently match and then there's the rest of the contributors.
All source files have a standardized GPL header.
Repository on GitHub, which uses git. Repository on GitHub, which uses git. git is distributed.
https://github.com/gemrb/gemrb/issues?q=is%3Aopen+is%3Aissue+label%3A%22good+first+issue%22
All PRs are vetted and direct commits are peer reviewed. Peer review is encouraged.
https://github.com/gemrb/gemrb/issues/173
make test https://github.com/gemrb/gemrb/blob/master/gemrb/CMakeLists.txt#L184
Travis and AppVeyor do build testing and also run the minimal test, which covers the main startup sequence with some dummy data. https://github.com/gemrb/gemrb/blob/master/.travis.yml#L53
That level of coverage is impossible due to complex runtime requirements.
fully static but // X-Content-Type-Options was not set to "nosniff".
no special security compiler flags are used
Not applicable.
Dynamic analysis is not applicable, but there are many asserts used in key places.
后退