Trusted Cyber Annex
Subscribe
Sign in
Home
Notes
Chat
Document Downloads
Archive
About
Fact Checking the AI
Using known good values to verify AI-generated content
Mar 5
•
Matthew Smith
2
Latest
Top
Discussions
NIST's Secure Software Development Framework (SSDF) 1.2
Takeaways for the draft currently out for public comment
Jan 27
•
Karen (Scarfone) Kent
4
Five takeaways from NIST SP 800-70 update
National Checklist Program for IT Products: Guidelines for Checklist Users and Developers
Jan 12
•
Karen (Scarfone) Kent
and
Matthew Smith
2
Do AI chatbots tell the truth? Six-month follow-up
Six months ago, I tested five AI chatbots—ChatGPT, Claude, Copilot, Gemini, and Perplexity—to see how they performed when asked to provide a set of…
Jan 6
•
Karen (Scarfone) Kent
6
Thanks, and best wishes for 2026!
You know when you make plans and life laughs out loud at them?
Dec 12, 2025
•
Karen (Scarfone) Kent
3
2
In-depth Q&A on federal cybersecurity writing
Earlier this fall, I did a Q&A session on my experiences writing for NIST. Last week I did a follow-up Q&A session that went into more detail on my NIST…
Nov 7, 2025
•
Karen (Scarfone) Kent
3
1
Details on the risk management API
Last week we announced the alpha release of the TCAnnex API.
Oct 6, 2025
•
Matthew Smith
1
Big news: an API for NIST risk management documents
Delivering high-integrity data in a machine-readable format directly to you
Oct 2, 2025
•
Matthew Smith
2
See all
Trusted Cyber Annex
The home for honest, high-integrity cybersecurity guidance and community
Subscribe
Trusted Cyber Annex
Subscribe
About
Archive
Sitemap
This site requires JavaScript to run correctly. Please
turn on JavaScript
or unblock scripts