2022-02-11 Meeting Minutes
Hyperledger is committed to creating a safe and welcoming community for all. For more information please visit the Hyperledger Code of Conduct. |
|---|
Welcome and Introductions
Who you are, which project you represent, your role in the project and what your interest is in the Hyperledger security process effort.
Attendees
@Arun S M
@Ry Jones
@Danno Ferrin
@Arnaud J LE HORS
@Hitesh Sharma
Announcements
Agenda
Welcome
Scoring guidelines for blockchain projects in Hyperledger Foundation.
Review comments/discussions on https://github.com/ossf/security-reviews
Review checklist for reporting vulnerabilities. Covers both the project team and an external member.
Open agenda
Next Meeting
Future Topics
Notes
Waiting for the proposal on scoring guidelines ~ today's meeting agenda will be carried over to 25th Feb.
Question for discussion: signing artefacts policy and reproducible builds.
Policy for dependent license checks.
External agency - Check once a quarter.
Look into score card - from OpenSSF https://github.com/ossf/scorecard .