Rules of Engagement for Forking a Dependency
Offered By: OpenSSF via YouTube
Course Description
Overview
Explore the decision-making process for forking dependencies in response to security vulnerabilities. Learn the rules of engagement used by Atsign when faced with CVE notifications and customer concerns about software bill of materials (SBOMs). Discover how to balance being a good community citizen while ensuring timely fixes for security issues. This 11-minute talk by Chris Swan from Atsign, presented at an OpenSSF event, provides valuable insights into when and how to fork dependencies responsibly in the face of unresolved vulnerabilities.
Syllabus
Rules of Engagement for Forking a Dependency - Chris Swan, Atsign
Taught by
OpenSSF
Related Courses
Introduction to FinanceUniversity of Michigan via Coursera Information Security and Risk Management in Context
University of Washington via Coursera Financial Engineering and Risk Management
Columbia University via Coursera Building an Information Risk Management Toolkit
University of Washington via Coursera Caries Management by Risk Assessment (CAMBRA)
University of California, San Francisco via Coursera