OpenSSF Best Practices Badge Criteria
Passing level: Security – OpenSSF Best Practices Badge Criteria

OpenSSF Best Practices Badge Criteria passing.crypto_pfs: crypto_pfs (Passing, SHOULD)

Passing criterion crypto_pfs (SHOULD; group Security, Use basic good cryptographic practices). Criterion text: The security mechanisms within the software produced by the project SHOULD implement perfect forward secrecy for key agreement protocols so a session key derived from a set of long-term keys cannot be compromised if one of the long-term keys is compromised in the future.

Maintained by Gerard Blokdyk

Other controls in Passing level: Security – OpenSSF Best Practices Badge Criteria

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.