Open
Description
A number of SW supply chain (SWSC) best practices frameworks have come out of CISA, NIST, and the OpenSSF. This issue tracks the implementation plan for meeting these practices.
Implementing these practices often requires multiple steps and/or tools. This issue tracks implementation progress in this issue:
- Create SW supply chain best practices implementation doc
- Implement NTIA minimum SBOM requirements
- Implement OpenSSF Scorecard requirements
- Implement OpenSSF SLSA Build L3 requirements