遵循以下最佳实践的项目将能够自愿的自我认证,并显示他们已经实现了核心基础设施计划(OpenSSF)徽章。 显示详细资料
[](https://www.bestpractices.dev/projects/8928)
<a href="https://www.bestpractices.dev/projects/8928"><img src="https://www.bestpractices.dev/projects/8928/badge"></a>
DevGuard Backend - Manage your CVEs seamlessly, Integrate your Vulnerability Scanners, Documentation made easy, Compliance to security Frameworks - OWASP Incubating Project
DRY Principles: https://github.com/l3montree-dev/devguard/blob/main/CONTRIBUTING.md
https://github.com/l3montree-dev/flawfix/blob/main/CONTRIBUTING.md & https://github.com/l3montree-dev/flawfix/blob/main/docs/dco.txt
https://github.com/l3montree-dev/flawfix/blob/main/CODE_OF_CONDUCT.md
https://github.com/l3montree-dev/flawfix/blob/main/CHANGELOG.md
https://github.com/l3montree-dev/devguard/issues
https://github.com/l3montree-dev/flawfix/blob/main/SECURITY.md
https://github.com/l3montree-dev/devguard/blob/main/CONTRIBUTING.md
The settings for the warning tools are generally fairly strict.
警告:需要更长的理由。
Semgrep and Trivy and golangci-lint
The used language is memory-safe go.
后退