Skip to content

Commit d5816fd

Browse files
author
GitHub Actions
committed
update DSACMS data: Sun Jan 5 08:49:05 UTC 2025
1 parent 7848180 commit d5816fd

File tree

17 files changed

+373
-373
lines changed

17 files changed

+373
-373
lines changed

app/site/_data/DSACMS/.github/.github_data.json

+21-21
Original file line numberDiff line numberDiff line change
@@ -145,14 +145,14 @@
145145
},
146146
"created_at": "2023-03-28T21:30:52Z",
147147
"ossf_scorecard": {
148-
"date": "2024-12-22T08:42:09Z",
148+
"date": "2025-01-05T08:47:32Z",
149149
"repo": {
150150
"name": "github.com/DSACMS/.github",
151151
"commit": "cd2f55d7147966e5d1499ffe364ce1904bc59779"
152152
},
153153
"scorecard": {
154-
"version": "v5.0.0-120-g5e90f2dd",
155-
"commit": "5e90f2dd5f343abfbf4583135d729b8d4167c162"
154+
"version": "v5.0.0-125-g975ee230",
155+
"commit": "975ee2304ef7097c94a377fe95976604b4adcf22"
156156
},
157157
"score": 4.4,
158158
"checks": [
@@ -162,7 +162,7 @@
162162
"reason": "no binaries found in the repo",
163163
"name": "Binary-Artifacts",
164164
"documentation": {
165-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#binary-artifacts",
165+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#binary-artifacts",
166166
"short": "Determines if the project has generated executable (binary) artifacts in the source repository."
167167
}
168168
},
@@ -172,7 +172,7 @@
172172
"reason": "branch protection not enabled on development/release branches",
173173
"name": "Branch-Protection",
174174
"documentation": {
175-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#branch-protection",
175+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#branch-protection",
176176
"short": "Determines if the default and release branches are protected with GitHub's branch protection settings."
177177
}
178178
},
@@ -182,7 +182,7 @@
182182
"reason": "0 out of 4 merged PRs checked by a CI test -- score normalized to 0",
183183
"name": "CI-Tests",
184184
"documentation": {
185-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#ci-tests",
185+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#ci-tests",
186186
"short": "Determines if the project runs tests before pull requests are merged."
187187
}
188188
},
@@ -192,7 +192,7 @@
192192
"reason": "no effort to earn an OpenSSF best practices badge detected",
193193
"name": "CII-Best-Practices",
194194
"documentation": {
195-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#cii-best-practices",
195+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#cii-best-practices",
196196
"short": "Determines if the project has an OpenSSF (formerly CII) Best Practices Badge."
197197
}
198198
},
@@ -202,7 +202,7 @@
202202
"reason": "Found 4/23 approved changesets -- score normalized to 1",
203203
"name": "Code-Review",
204204
"documentation": {
205-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#code-review",
205+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#code-review",
206206
"short": "Determines if the project requires human code review before pull requests (aka merge requests) are merged."
207207
}
208208
},
@@ -212,7 +212,7 @@
212212
"reason": "project has 4 contributing companies or organizations",
213213
"name": "Contributors",
214214
"documentation": {
215-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#contributors",
215+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#contributors",
216216
"short": "Determines if the project has a set of contributors from multiple organizations (e.g., companies)."
217217
}
218218
},
@@ -222,7 +222,7 @@
222222
"reason": "internal error: internal error: invalid GitHub workflow:\n:18:0: could not parse as YAML: yaml: line 18: found character that cannot start any token [syntax-check]",
223223
"name": "Dangerous-Workflow",
224224
"documentation": {
225-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#dangerous-workflow",
225+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#dangerous-workflow",
226226
"short": "Determines if the project's GitHub Action workflows avoid dangerous patterns."
227227
}
228228
},
@@ -232,7 +232,7 @@
232232
"reason": "no update tool detected",
233233
"name": "Dependency-Update-Tool",
234234
"documentation": {
235-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#dependency-update-tool",
235+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#dependency-update-tool",
236236
"short": "Determines if the project uses a dependency update tool."
237237
}
238238
},
@@ -242,7 +242,7 @@
242242
"reason": "project is not fuzzed",
243243
"name": "Fuzzing",
244244
"documentation": {
245-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#fuzzing",
245+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#fuzzing",
246246
"short": "Determines if the project uses fuzzing."
247247
}
248248
},
@@ -252,7 +252,7 @@
252252
"reason": "license file detected",
253253
"name": "License",
254254
"documentation": {
255-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#license",
255+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#license",
256256
"short": "Determines if the project has defined a license."
257257
}
258258
},
@@ -262,7 +262,7 @@
262262
"reason": "5 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 4",
263263
"name": "Maintained",
264264
"documentation": {
265-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#maintained",
265+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#maintained",
266266
"short": "Determines if the project is \"actively maintained\"."
267267
}
268268
},
@@ -272,7 +272,7 @@
272272
"reason": "internal error: internal error: invalid GitHub workflow:\n:18:0: could not parse as YAML: yaml: line 18: found character that cannot start any token [syntax-check]",
273273
"name": "Packaging",
274274
"documentation": {
275-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#packaging",
275+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#packaging",
276276
"short": "Determines if the project is published as a package that others can easily download, install, easily update, and uninstall."
277277
}
278278
},
@@ -282,7 +282,7 @@
282282
"reason": "internal error: internal error: invalid GitHub workflow:\n:18:0: could not parse as YAML: yaml: line 18: found character that cannot start any token [syntax-check]",
283283
"name": "Pinned-Dependencies",
284284
"documentation": {
285-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#pinned-dependencies",
285+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#pinned-dependencies",
286286
"short": "Determines if the project has declared and pinned the dependencies of its build process."
287287
}
288288
},
@@ -292,7 +292,7 @@
292292
"reason": "internal error: internal error: invalid GitHub workflow:\n:18:0: could not parse as YAML: yaml: line 18: found character that cannot start any token [syntax-check]",
293293
"name": "SAST",
294294
"documentation": {
295-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#sast",
295+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#sast",
296296
"short": "Determines if the project uses static code analysis."
297297
}
298298
},
@@ -302,7 +302,7 @@
302302
"reason": "security policy file detected",
303303
"name": "Security-Policy",
304304
"documentation": {
305-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#security-policy",
305+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#security-policy",
306306
"short": "Determines if the project has published a security policy."
307307
}
308308
},
@@ -312,7 +312,7 @@
312312
"reason": "no releases found",
313313
"name": "Signed-Releases",
314314
"documentation": {
315-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#signed-releases",
315+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#signed-releases",
316316
"short": "Determines if the project cryptographically signs release artifacts."
317317
}
318318
},
@@ -322,7 +322,7 @@
322322
"reason": "internal error: internal error: invalid GitHub workflow:\n:18:0: could not parse as YAML: yaml: line 18: found character that cannot start any token [syntax-check]",
323323
"name": "Token-Permissions",
324324
"documentation": {
325-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#token-permissions",
325+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#token-permissions",
326326
"short": "Determines if the project's workflows follow the principle of least privilege."
327327
}
328328
},
@@ -332,7 +332,7 @@
332332
"reason": "0 existing vulnerabilities detected",
333333
"name": "Vulnerabilities",
334334
"documentation": {
335-
"url": "https://github.com/ossf/scorecard/blob/5e90f2dd5f343abfbf4583135d729b8d4167c162/docs/checks.md#vulnerabilities",
335+
"url": "https://github.com/ossf/scorecard/blob/975ee2304ef7097c94a377fe95976604b4adcf22/docs/checks.md#vulnerabilities",
336336
"short": "Determines if the project has open, known unfixed vulnerabilities."
337337
}
338338
}

0 commit comments

Comments
 (0)