feat: add OSPS baseline maturity config - #117
Conversation
jpower432
left a comment
There was a problem hiding this comment.
Thanks for submitting this @slegarraga! Really close, just some outdated core member entries like the other one.
| affiliation: GitHub | ||
| email: jmeridth@gmail.com | ||
| primary: false | ||
| - name: Travis Truman |
There was a problem hiding this comment.
| - name: Travis Truman | |
| - name: Hannah Braswell |
There was a problem hiding this comment.
Done, applied in the latest commit. Thanks for the precise pointers, Jenn!
| email: jmeridth@gmail.com | ||
| primary: false | ||
| - name: Travis Truman | ||
| affiliation: Independent |
There was a problem hiding this comment.
| affiliation: Independent | |
| affiliation: Red Hat |
There was a problem hiding this comment.
Done, applied in the latest commit. Thanks for the precise pointers, Jenn!
| primary: false | ||
| - name: Travis Truman | ||
| affiliation: Independent | ||
| email: trumant@gmail.com |
There was a problem hiding this comment.
| email: trumant@gmail.com |
There was a problem hiding this comment.
Done, applied in the latest commit. Thanks for the precise pointers, Jenn!
| affiliation: Independent | ||
| email: trumant@gmail.com | ||
| primary: false | ||
| - name: Alex Speasmaker |
There was a problem hiding this comment.
Can we delete this entry?
There was a problem hiding this comment.
Done, applied in the latest commit. Thanks for the precise pointers, Jenn!
Signed-off-by: Sebastian Legarraga <64795732+slegarraga@users.noreply.github.com>
Travis Truman -> Hannah Braswell (Red Hat); drop the outdated Alex Speasmaker entry, per jpower432's review. Signed-off-by: Sebastian Legarraga <64795732+slegarraga@users.noreply.github.com>
94e76b5 to
247f5d0
Compare
|
Thanks for the quick review, @jpower432! Refreshed the core-team entries in 247f5d0: replaced the outdated Travis Truman entry with Hannah Braswell (Red Hat) and dropped the outdated Alex Speasmaker entry, matching the current core team. All three checks are green on the updated head. Ready for another look whenever you get a chance. |
Closes #116
Summary
Adds Baseline Maturity Level 1 configuration for
gemara-mcp:security-insights.ymlfollowing thegemararepository pattern, with repository URLs adapted togemara-mcp;.github/workflows/baseline-scanner.ymlrunning the weekly OSPS baseline scan and allowing manual dispatch.Verification
GEMARA_AUTOMATION_CLIENT_IDandGEMARA_AUTOMATION_PRIVATE_KEYrepository secrets.Config-only change.
Signed off with DCO.