Skip to content

Conversation

@zhijie-yang
Copy link
Contributor

This PR adds the security documentation (cryptographic documentation) to meet SSDLC 2.0 requirements.

@letFunny
Copy link
Collaborator

letFunny commented Oct 2, 2025

Thanks for this James, this is looking great. It is well written and clear. I am only waiting for the SSDLC documentation to be back online to see what the requirements for this document are.

Copy link
Collaborator

@letFunny letFunny left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This is perfect, thanks James! I wonder if we should also include later on, in another PR, some documentation about the security of the created images themselves. Per the guidelines:

a description of the product's security features, as well as recommended hardening settings

We could mention pro support and the --ignore flags as something that is not desirable. But let's not do it in this PR.

@cjdcordeiro cjdcordeiro merged commit c95b51e into main Oct 2, 2025
4 of 6 checks passed
@cjdcordeiro cjdcordeiro deleted the ROCKS-1986/cypto-doc branch October 2, 2025 12:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants