Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

scorecard: update to version 5 #1830

Closed
planetf1 opened this issue Jul 1, 2024 · 2 comments · Fixed by #1890
Closed

scorecard: update to version 5 #1830

planetf1 opened this issue Jul 1, 2024 · 2 comments · Fixed by #1890

Comments

@planetf1
Copy link
Contributor

planetf1 commented Jul 1, 2024

The openSSF scorecard execution is currently running with version 4 of scorecard

Once v5 goes GA, we should update to v5 (currently at v5.0.0-rc2)

See https://github.com/ossf/scorecard/releases

@ajbozarth ajbozarth moved this to Todo in liboqs planning Jul 23, 2024
planetf1 added a commit to planetf1/liboqs that referenced this issue Aug 13, 2024
@planetf1
Copy link
Contributor Author

Initial update done. will review results from PR.

One of the changes in v5 is the ability to get more structure in the results, and have more control around what information is shared -- for example adding an annotation explaining why something is the way it is.

See v5 release notes

planetf1 added a commit to planetf1/liboqs that referenced this issue Aug 27, 2024
@planetf1
Copy link
Contributor Author

PR is ready for review

planetf1 added a commit to planetf1/liboqs that referenced this issue Sep 25, 2024
baentsch pushed a commit that referenced this issue Dec 21, 2024
* #1830 update scorecard to v5 (gh action 2.4.0)

Signed-off-by: Nigel Jones <[email protected]>

* Pin action version in unix.yml

Signed-off-by: Nigel Jones <[email protected]>

* Schedule only, no PR. Minor updates to scorecard

Signed-off-by: Nigel Jones <[email protected]>

---------

Signed-off-by: Nigel Jones <[email protected]>
@github-project-automation github-project-automation bot moved this from Todo to Done in liboqs planning Dec 21, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
Status: Done
Development

Successfully merging a pull request may close this issue.

1 participant