Skip to content
This repository was archived by the owner on Aug 29, 2024. It is now read-only.
This repository was archived by the owner on Aug 29, 2024. It is now read-only.

Address security issues in playbook #77

@lukefretwell

Description

@lukefretwell

via @mannyb16:

The Playbook does not adequately address security issues. Not all code is suitable for redistribution, nor should they be redistributed. The policy specifies certain SAM exemptions to redistribution and these exemptions should be highlighted in the playbook. We may be able to bring the CDT Office of Information Security in to help work on this but it will take some time.

To-do:

Reference:

Security Risk Review. Consult with the Agency CIO and Information Security Officer to determine if there are any identifiable security risks according to SAM 4984.2. If the Agency determines that the code will not be publicly released as open source, the particular risks identified must be logged in the code inventory.

Metadata

Metadata

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions