OpenSSF Best Practices Badge Criteria
Silver level: Basics – OpenSSF Best Practices Badge Criteria

OpenSSF Best Practices Badge Criteria silver.dco: dco (Silver, SHOULD)

Silver criterion dco (SHOULD; group Basics, Project oversight). Criterion text: The project SHOULD have a legal mechanism where all developers of non-trivial amounts of project software assert that they are legally authorized to make these contributions. The most common and easily-implemented approach for doing this is by using a Developer Certificate of Origin (DCO), where users add "signed-off-by" in their commits and the project links to the DCO website. However, this MAY be implemented as a Contributor License Agreement (CLA), or other legal mechanism.

Maintained by Gerard Blokdyk

Other controls in Silver level: Basics – OpenSSF Best Practices Badge Criteria

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.