Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Remove project list and clarify the assessment process #1211

Merged
merged 2 commits into from
Jan 4, 2024
Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
15 changes: 5 additions & 10 deletions assessments/projects/README.md
Original file line number Diff line number Diff line change
@@ -1,19 +1,14 @@
# Security TAG Reviews
<!-- cSpell:ignore Buildpacks buildpacks -->
This directory contains the artifacts of Security TAG's various assessments and
reviews of projects. Information on the processes to by which these artifacts
are produced can be found in the [guide](/assessments/guide).

## Project reviews and assessments
Note that the process has changed slightly over time, so please see the individual
project directory for information about what type of assessment was performed.

| Project | Type | dtd |
| ------- | ---- | --- |
| Cloud Native Buildpacks | [Joint Review](buildpacks) | 2021 September |
| Harbor | [Joint Review](harbor) | 2020 April |
| in-toto | [Joint Review](in-toto) | 2019 May |
| Keycloak | [Joint Review](keycloak) | 2020 |
| Open Policy Agent | [Joint Review](opa) | 2019 September |
| SPIFFE/SPIRE | [Joint Review](spiffe-spire) | 2020 February |
Note also, that some of the self-assessments were created by Security Pals, who are
external parties that review the project's documentation to create an assessment
draft. These may not have been reviewed by the project team.

## CNCF project audits

Expand Down
Loading