OpenSSF Best Practices Badge Criteria
Silver level: Security – OpenSSF Best Practices Badge Criteria

OpenSSF Best Practices Badge Criteria silver.crypto_verification_private: crypto_verification_private (Silver, MUST)

Silver criterion crypto_verification_private (MUST; group Security, Use basic good cryptographic practices). Criterion text: The software produced by the project MUST, if it supports TLS, perform certificate verification before sending HTTP headers with private information (such as secure cookies). If the software does not use TLS, select "not applicable" (N/A).

Maintained by Gerard Blokdyk

Other controls in Silver level: Security – OpenSSF Best Practices Badge Criteria

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.