LFX Security Insights + Scorecards #1622
azeemshaikh38
started this conversation in
General
Replies: 1 comment
-
Sounds good to me, strongly support! |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Meeting notes on LFX Security Insights from Scorecard bi-weekly of Feb 10th 2022:
(i) Expanded coverage of the larger OSS ecosystem. Today, only projects owned by LF are listed in LFX.
(ii) An API for consumers of this data.
(iii) Connector-based data flow where each system/tool can push data to the datalake and have it exposed through the API or
web dashboard. This allows for the flexibility such that some OSS projects have certain metrics populated but not others.
The proposed plan here is to turndown metrics.openssf.org and leverage the work of LFX Security Insights for exposing/showcasing the OpenSSF security metrics.
@laurentsimon @naveensrinivasan @oliverchang @inferno-chromium @scovetta fyi.
@david-a-wheeler could you add Shubra to this discussion?
Beta Was this translation helpful? Give feedback.
All reactions