From 6d4840ab6b4f738c2d2b7be68b1fc9b9803af4ea Mon Sep 17 00:00:00 2001 From: CRob <69357996+SecurityCRob@users.noreply.github.com> Date: Thu, 19 Dec 2024 15:40:25 -0500 Subject: [PATCH] Update baseline.yaml Co-authored-by: Ben Cotton Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com> --- baseline.yaml | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/baseline.yaml b/baseline.yaml index 8f37f76..3806e87 100644 --- a/baseline.yaml +++ b/baseline.yaml @@ -658,7 +658,11 @@ criteria: architectural changes. objective: | Projects need to have a formally documented - exteranl security audit/review/assessment and + external security audit/review/assessment to + understand the most likely and impactful + problems that could occur within the + software, and make plans to address those + problems. The project must provide evidence on request. implementation: | Create a status check that checks the project's