Skip to content

Install OpenSSF Scorecard and consider adopting its recommendations #230

@joshlf

Description

@joshlf

This derives from a request by Google's security team, which is reproduced here:

We ask that you please:

  1. install the OpenSSF Scorecard GitHub Action (instructions) in your repository.
  2. adopt its suggestions to improve your project's security posture.

A preliminary run of the OpenSSF Scorecard has identified the following improvements that can be made to the project, followed by their risk level and a summary of the remediation steps:

Current status: OpenSSF Scorecard

Steps:

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions