OpenSSF Open Source Project Security Baseline (OSPS Baseline)
QA: Quality – OpenSSF Open Source Project Security Baseline (OSPS Baseline)

OpenSSF Open Source Project Security Baseline (OSPS Baseline) OSPS-QA-06.02: OSPS-QA-06.02 Use Automated Testing in CI/CD Pipelines

OSPS-QA-06 Use Automated Testing in CI/CD Pipelines (maturity level 3). Requirement: The project documentation MUST clearly document when and how tests are run. Objective of the control: Ensure that the project uses at least one automated test suite for the source code repository and clearly documents when and how tests are run. Recommendation: Add a section to the contributing documentation that explains how to run the tests locally and how to run the tests in the CI/CD pipeline. The documentation should explain what the tests are testing and how to interpret the results.

Maintained by Gerard Blokdyk

Other controls in QA: Quality – OpenSSF Open Source Project Security Baseline (OSPS Baseline)

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.