OpenSSF Open Source Project Security Baseline (OSPS Baseline)
SA: Security Assessment – OpenSSF Open Source Project Security Baseline (OSPS Baseline)

OpenSSF Open Source Project Security Baseline (OSPS Baseline) OSPS-SA-02.01: OSPS-SA-02.01 Publish External Interface Descriptions

OSPS-SA-02 Publish External Interface Descriptions (maturity levels 2, 3). Requirement: When the project has made a release, the project documentation MUST include descriptions of all external software interfaces of the released software assets. Objective of the control: Provide users and developers with an understanding of how to interact with the project's software and integrate it with other systems, enabling them to use the software effectively. Recommendation: Document all software interfaces (APIs) of the released software assets, explaining how users can interact with the software and what data is expected or produced. Ensure this is updated for new features or breaking changes.

Maintained by Gerard Blokdyk

Other controls in SA: Security Assessment – OpenSSF Open Source Project Security Baseline (OSPS Baseline)

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.