Secure by Design: A Guide for Manufacturers (CISA)
Principle 2: Embrace radical transparency and accountability – Secure by Design: A Guide for Manufacturers (CISA)

Secure by Design: A Guide for Manufacturers (CISA) P2-SD3: Publish data on unused privileges

Publish aggregate information on excess permissions across customers and the product nudges and changes being made to reduce that attack surface; such unused privileges are natural candidates for seat-belt style administrator alerts.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Principle 2: Embrace radical transparency and accountability – Secure by Design: A Guide for Manufacturers (CISA)

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.