Organizations/openssf
Organization
Open Source Security Foundation
openssf
The Open Source Security Foundation (OpenSSF) is a community of software developers, security engineers, and more who are working together to secure open source software for the greater public good.
Showing 15 Catalogs
OSPS Baseline to UK NCSC Software Security Code of Practice Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to UK NCSC Software Security Code of Practice. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to NIST SSDF Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to NIST SSDF. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to SLSA Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to SLSA. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to OpenSSF Scorecard Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to OpenSSF Scorecard. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to OWASP SAMM Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to OWASP SAMM. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to P-SSCRM Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to P-SSCRM. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to PCI DSS Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to PCI DSS. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to OpenCRE Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to OpenCRE. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to ISO/IEC 18974 Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to ISO/IEC 18974. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to NIST CSF 2.0 Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to NIST CSF 2.0. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to EU Cyber Resilience Act Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to EU Cyber Resilience Act. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to BSI TR-03185-2 Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to BSI TR-03185-2. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to OpenSSF Best Practices Badge Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to OpenSSF Best Practices Badge. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
OSPS Baseline to NIST SP 800-161 Mapping
Mapping DocumentCross-walk from the Open Source Project Security (OSPS) Baseline controls to NIST SP 800-161. Each mapping asserts a "relates-to" relationship; strength, confidence-level, and rationale are left unset and should be added as the mappings are individually reviewed.
Open Source Project Security Baseline
Control CatalogThe Open Source Project Security (OSPS) Baseline is a set of security criteria that projects should meet to demonstrate a strong security posture.