You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Is your feature request related to a problem? Please describe.
Users are unaware of how cFS/osal is tested. By providing this information, transparency is provided to the community which promotes trust.
Describe the solution you'd like
The security policy should inform users what tools are being used to test cFS/osal while being cautious of liability issues. To do so, we can state explicitly that our software does not provide liability under the Apache license. The security policy should inform users that they may view the LGTM results. The policy would state that the alerts from LGTM may not be accurate, since they cannot be dismissed.
Is your feature request related to a problem? Please describe.
Users are unaware of how cFS/osal is tested. By providing this information, transparency is provided to the community which promotes trust.
Describe the solution you'd like
The security policy should inform users what tools are being used to test cFS/osal while being cautious of liability issues. To do so, we can state explicitly that our software does not provide liability under the Apache license. The security policy should inform users that they may view the LGTM results. The policy would state that the alerts from LGTM may not be accurate, since they cannot be dismissed.
Add that security report should be emailed.
Additional context
References: https://github.com/thanos-io/thanos/security/policy
Requester Info
Ariel Adams, ASRC Federal
The text was updated successfully, but these errors were encountered: