遵循以下最佳实践的项目将能够自愿的自我认证,并显示他们已经实现了核心基础设施计划(OpenSSF)徽章。 显示详细资料
[](https://www.bestpractices.dev/projects/4681)
<a href="https://www.bestpractices.dev/projects/4681"><img src="https://www.bestpractices.dev/projects/4681/badge"></a>
Open source platform for X.509 certificate based service authentication and fine grained access control in dynamic infrastructures. Athenz supports provisioning and configuration (centralized authorization) use cases as well as serving/runtime (decentralized authorization) use cases.
Athenz has 3 core maintainers as mentioned at https://github.com/AthenZ/athenz/blob/master/MAINTAINERS in addition to that individual non-core sub-projects have its own separate maintainers.
Repository on GitHub, which uses git. git is distributed.
Unit tests are executed as part of the build, using standard maven build process.
警告:需要URL,但找不到URL。
Athenz main branch build is triggered on every merge and automated tests run in every build.
// X-Content-Type-Options was not set to "nosniff".
We are working on onboarding to a dynamic analysis tool but Athenz is not using one today. Unit tests for individual sub-modules do have a good coverage with negative and boundary condition input testing.
Athenz servers produce run-time events such as logs and metrics which are exposed to monitoring tools and can be used for dynamic analysis.
后退