Secure Rpm Audit

Use when the user asks to perform a security audit, security review, or vulnerability assessment of an RPM packaging repository (CentOS Stream / Fedora / RHEL dist-git) — a repo containing a .spec file, downstream patches, and a sources lookaside manifest — using OWASP ASVS, the SEI CERT C/C++ Coding Standards, Fedora Packaging Guidelines, SLSA, and OpenSSF Scorecard.

openshift 0bcbb4b 39.7 KB Updated

File contents

openshift/traust/tree/main/harnessing/3-audit/secure-rpm-audit commit 0bcbb4b800

Frequently asked questions

npx skillmds@latest add openshift/secure-rpm-audit