Coder Social home page Coder Social logo

slsa's Introduction

SLSA ("salsa") is Supply-chain Levels for Software Artifacts

The OpenSSF mascot, a goose in armor, strikes a pose wearing a red salsa dress

SLSA (pronounced "salsa") is a security framework from source to service, giving anyone working with software a common language for increasing levels of software security and supply chain integrity. It’s how you get from safe enough to being as resilient as possible, at any link in the chain.

Learning about SLSA

See https://slsa.dev to learn about SLSA.

What's in this repo?

The primary content of this repo is the docs/ directory, which contains the core SLSA specification and sources to the slsa.dev website. See the README.md in that directory for instructions on how to build the site.

This repository also hosts SLSA's main issue tracker, covering the website, specification, and overall project management. Other git repositories within the slsa-framework organization have repo-specific issue trackers.

How to get involved

See https://slsa.dev/community for ways to get involved in SLSA development.

Active workstreams

Workstream Shepherd
Build Level 4 David A Wheeler (@david-a-wheeler)
Hardware Attested Platforms Marcela Melara (@marcelamelara), Chad Kimes (@chkimes)
Source Track Kris K (@kpk47)
Version 1.1 release Joshua Lock (@joshuagl)

URL Aliases

We have several redirect configured on slsa.dev for convenience of the team:

Governance

SLSA is an OpenSSF project. See slsa-framework/governance for governance information, including current steering committee members.

To include the steering committee on GitHub, use @slsa-framework/slsa-steering-committee.

License

All SLSA specification content contributed following adoption of the Community Specification governance model is provided under the Community Specification License 1.0.

Pre-existing portions of the SLSA specification from contributors who have not subsequently contributed under the Community Specification License 1.0 following its adoption are provided under the Apache License 2.0.

slsa's People

Contributors

abacchi avatar adamzwu avatar arewm avatar asraa avatar axelsimon avatar chtiangg avatar dependabot[bot] avatar devmoran avatar di avatar gennadyspb avatar hepwori avatar ianlewis avatar inferno-chromium avatar jonvnadelberg avatar joshuagl avatar kimsterv avatar kpk47 avatar laurentsimon avatar lehors avatar lumjjb avatar marcelamelara avatar marklodato avatar mlieberman85 avatar mparsonspsycle avatar msuozzo avatar nicoleschwartz avatar olivekl avatar renovate-bot avatar thomasowens avatar tomhennen avatar

Watchers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.