OpenSSF Best Practices Badge Criteria
Silver level: Reporting – OpenSSF Best Practices Badge Criteria

OpenSSF Best Practices Badge Criteria silver.vulnerability_report_credit: vulnerability_report_credit (Silver, MUST)

Silver criterion vulnerability_report_credit (MUST; group Reporting, Vulnerability report process). Criterion text: The project MUST give credit to the reporter(s) of all vulnerability reports resolved in the last 12 months, except for the reporter(s) who request anonymity. If there have been no vulnerabilities resolved in the last 12 months, select "not applicable" (N/A).

Maintained by Gerard Blokdyk

Other controls in Silver level: Reporting – OpenSSF Best Practices Badge Criteria

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.