Skip to content

Commit

Permalink
Add Software Supply Chain Best Practices v2 markdown
Browse files Browse the repository at this point in the history
Signed-off-by: Marina Moore <[email protected]>
  • Loading branch information
mnm678 committed Oct 29, 2024
1 parent b5a1b3b commit adf2528
Show file tree
Hide file tree
Showing 3 changed files with 841 additions and 0 deletions.
1 change: 1 addition & 0 deletions community/publications/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -28,6 +28,7 @@ This document lists all the publications and resources that TAG Security has pro
| | OPA | Markdown | [Link](/community/assessments/projects/opa) |
| | Spiffe-Spire | Markdown | [Link](/community/assessments/projects/spiffe-spire) |
| **Supply Chain Security** | | | |
| | Software Supply Chain Best Practices v2 | Markdown | [Link](/community/working-groups/supply-chain-security/supply-chain-security-paper-v2/SSCBPv2.md) |
| | Software Supply Chain Best Practices | Markdown | [Link](/community/working-groups/supply-chain-security/supply-chain-security-paper/sscsp.md) |
| | | PDF | [Link](/community/working-groups/supply-chain-security/supply-chain-security-paper/CNCF_SSCP_v1.pdf) |
| | Evaluating your supply chain security | Markdown | [Link](/community/working-groups/supply-chain-security/supply-chain-security-paper/secure-supply-chain-assessment.md) |
Expand Down
Original file line number Diff line number Diff line change
@@ -0,0 +1,14 @@
# Software Supply Chain Best Practices v2

## About
This is an update to the Software Supply Chain Best Practices whitepaper that accounts for how the field has evolved.
The paper adds descriptions of personas to help guide the reader to relevant parts of the paper, and updates descriptions of the software supply chain best practices.

## Updates
Minor updates (typo fixes, etc) will be accepted to the markdown version of this paper.

Larger updates may be proposed, but may be pushed to a future version of the paper.

## Markdown
The [markdown](https://github.com/cncf/tag-security/blob/main/supply-chain-security/supply-chain-security-paper-v2/SSCBPv2.md) file is available in the repository.

Loading

0 comments on commit adf2528

Please sign in to comment.