Skip to content

v0.6 - Taxonomy & Quality Check

Choose a tag to compare

@HalfTimeOfLife HalfTimeOfLife released this 08 Aug 13:57
· 10 commits to main since this release

Seventh release of mispSK.

Added

  • taxonomy_check.py: validate MISP events against a minimal quality baseline (TLP present, PAP present, ATT&CK present)
  • mispsk/taxonomy.py: _check_tlp, _check_pap, _check_attack, check_event, build_taxonomy_report
  • Per-event score (0–3) and global compliance summary (X/Y events fully compliant (Z%))
  • --limit N (default: 100), --days N, --output table|csv, --output-file
  • Exit code 0 if all events fully compliant, 1 otherwise
  • tests/test_taxonomy.py

Known limitation

  • _check_attack detects ATT&CK via PyMISP galaxy objects and misp-galaxy:mitre-attack-pattern="..." tags — instances without synchronized MITRE ATT&CK galaxies will score 2/3 at best on this check

See CHANGELOG.md for full details and ROADMAP.md.