{"id":13809814,"url":"https://www.csaf.io","last_synced_at":"2025-05-14T10:31:36.907Z","repository":{"id":26028814,"uuid":"107146137","full_name":"oasis-open/csaf-documentation","owner":"oasis-open","description":"OASIS TC Open Repository: A GitHub repository for management of non-normative information about the work of the CSAF Technical Committee, including documentation","archived":false,"fork":false,"pushed_at":"2024-04-18T17:13:07.000Z","size":24791,"stargazers_count":18,"open_issues_count":21,"forks_count":9,"subscribers_count":9,"default_branch":"master","last_synced_at":"2024-04-18T18:56:23.594Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":"https://oasis-open.github.io/csaf-documentation/","language":"CSS","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"bsd-3-clause","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/oasis-open.png","metadata":{"files":{"readme":"README.md","changelog":"history/project-210504211929.mobirise_history","contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null}},"created_at":"2017-10-16T15:24:17.000Z","updated_at":"2024-04-17T17:44:00.000Z","dependencies_parsed_at":"2024-04-18T18:33:29.711Z","dependency_job_id":null,"html_url":"https://github.com/oasis-open/csaf-documentation","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/oasis-open%2Fcsaf-documentation","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/oasis-open%2Fcsaf-documentation/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/oasis-open%2Fcsaf-documentation/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/oasis-open%2Fcsaf-documentation/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/oasis-open","download_url":"https://codeload.github.com/oasis-open/csaf-documentation/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":213870383,"owners_count":15650179,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2024-08-04T02:00:36.640Z","updated_at":"2025-05-14T10:31:26.893Z","avatar_url":"https://github.com/oasis-open.png","language":"CSS","funding_links":[],"categories":["Links"],"sub_categories":[],"readme":"\u003cdiv\u003e\n\u003ch1\u003eREADME\u003c/h1\u003e\n\n\u003cdiv\u003e\n\u003ch2\u003e\u003ca id=\"readme-general\"\u003eOASIS TC Open Repository: csaf-documentation\u003c/a\u003e\u003c/h2\u003e\n\n\u003cp\u003eThis GitHub public repository ( \u003cb\u003e\u003ca href=\"https://github.com/oasis-open/csaf-documentation\"\u003ehttps://github.com/oasis-open/csaf-documentation\u003c/a\u003e\u003c/b\u003e ) was created at the request of the \u003ca href=\"https://www.oasis-open.org/committees/csaf/\"\u003eOASIS Common Security Advisory Framework (CSAF) TC\u003c/a\u003e as an \u003ca href=\"https://www.oasis-open.org/resources/open-repositories/\"\u003eOASIS TC Open Repository\u003c/a\u003e to support development of open source resources related to Technical Committee work.\u003c/p\u003e\n\n\u003cp\u003eWhile this TC Open Repository remains associated with the sponsor TC, its development priorities, leadership, intellectual property terms, participation rules, and other matters of governance are \u003ca href=\"https://github.com/oasis-open/csaf-documentation/blob/master/CONTRIBUTING.md#governance-distinct-from-oasis-tc-process\"\u003eseparate and distinct\u003c/a\u003e from the OASIS TC Process and related policies.\u003c/p\u003e\n\n\u003cp\u003eAll contributions made to this TC Open Repository are subject to open source license terms expressed in the \u003ca href=\"https://www.oasis-open.org/sites/www.oasis-open.org/files/BSD-3-Clause.txt\"\u003eBSD-3-Clause License\u003c/a\u003e.  That license was selected as the declared \u003ca href=\"https://www.oasis-open.org/resources/open-repositories/licenses\"\u003e\"Applicable License\"\u003c/a\u003e when the TC Open Repository was created.\u003c/p\u003e\n\n\u003cp\u003eAs documented in \u003ca href=\"https://github.com/oasis-open/csaf-documentation/blob/master/CONTRIBUTING.md#public-participation-invited\"\u003e\"Public Participation Invited\u003c/a\u003e\", contributions to this OASIS TC Open Repository are invited from all parties, whether affiliated with OASIS or not.  Participants must have a GitHub account, but no fees or OASIS membership obligations are required.  Participation is expected to be consistent with the \u003ca href=\"https://www.oasis-open.org/policies-guidelines/open-repositories\"\u003eOASIS TC Open Repository Guidelines and Procedures\u003c/a\u003e, the open source \u003ca href=\"https://github.com/oasis-open/csaf-documentation/blob/master/LICENSE\"\u003eLICENSE\u003c/a\u003e designated for this particular repository, and the requirement for an \u003ca href=\"https://www.oasis-open.org/resources/open-repositories/cla/individual-cla\"\u003eIndividual Contributor License Agreement\u003c/a\u003e that governs intellectual property.\u003c/p\u003e\n\n\u003c/div\u003e\n\n\u003cdiv\u003e\n\u003ch2\u003e\u003ca id=\"purposeStatement\"\u003eStatement of Purpose\u003c/a\u003e\u003c/h2\u003e\n\n\u003cp\u003eStatement of Purpose for this OASIS TC Open Repository (csaf-documentation) as \u003ca href=\"https://lists.oasis-open.org/archives/csaf/201710/msg00008.html\"\u003eproposed\u003c/a\u003e and \u003ca href=\"https://www.oasis-open.org/committees/download.php/61796/csaf-minutes-20170927-meeting-10.html\"\u003eapproved\u003c/a\u003e [\u003ca href=\"https://issues.oasis-open.org/browse/TCADMIN-2786\"\u003ebis\u003c/a\u003e] by the TC:\u003c/p\u003e\n\n\u003cp\u003eThe purpose of this GitHub public repository is to support development of open source resources and documentation related to CSAF Technical Committee work.\u003c/p\u003e\n\n\u003cp\u003eThe OASIS CSAF Technical Committee was \u003ca href=\"https://www.oasis-open.org/committees/csaf/charter.php\"\u003echartered\u003c/a\u003e to make a major revision to the Common Vulnerability Reporting Framework (CVRF) under a new name for the framework that reflects the primary purpose: a Common Security Advisory Framework (CSAF). TC deliverables are designed standardize existing practice in structured machine-readable vulnerability-related advisories and further refine those standards over time.\u003c/p\u003e\n\n\u003cp\u003eThe Common Security Advisory Framework's (CSAF) Common Vulnerability Reporting Framework (CVRF) is a language to exchange Security Advisories formulated in XML.  The term \u003ci\u003eSecurity Advisory\u003c/i\u003e describes any notification of security issues in products of and by providers. Anyone providing a product is considered in this document as a vendor, i.e. developers or maintainers of information system products or services. This includes all authoritative product vendors, Product Security Incident Response Teams (PSIRTs), and product resellers and distributors, including authoritative vendor partners.\u003c/p\u003e\n\n\n\u003c/div\u003e\n\n\u003cdiv\u003e\u003ch2\u003e\u003ca id=\"purposeClarifications\"\u003eAdditions to Statement of Purpose\u003c/a\u003e\u003c/h2\u003e\n\n\u003cp\u003eRepository Maintainers may include here any clarifications \u0026mdash; any additional sections, subsections, and paragraphs that the Maintainer(s) wish to add as descriptive text, reflecting (sub-) project status, milestones, releases, modifications to statement of purpose, etc.  The project Maintainers will create and maintain this content on behalf of the participants.\u003c/p\u003e\n\u003c/div\u003e\n\n\u003cdiv\u003e\n\u003ch2\u003e\u003ca id=\"maintainers\"\u003eMaintainers\u003c/a\u003e\u003c/h2\u003e\n\n\u003cp\u003eTC Open Repository \u003ca href=\"https://www.oasis-open.org/resources/open-repositories/maintainers-guide\"\u003eMaintainers\u003c/a\u003e are responsible for oversight of this project's community development activities, including evaluation of GitHub \u003ca href=\"https://github.com/oasis-open/csaf-documentation/blob/master/CONTRIBUTING.md#fork-and-pull-collaboration-model\"\u003epull requests\u003c/a\u003e and \u003ca href=\"https://www.oasis-open.org/policies-guidelines/open-repositories#repositoryManagement\"\u003epreserving\u003c/a\u003e open source principles of openness and fairness. Maintainers are recognized and trusted experts who serve to implement community goals and consensus design preferences.\u003c/p\u003e\n\n\u003cp\u003eInitially, the associated TC members have designated one or more persons to serve as Maintainer(s); subsequently, participating community members may select additional or substitute Maintainers, per \u003ca href=\"https://www.oasis-open.org/resources/open-repositories/maintainers-guide#additionalMaintainers\"\u003econsensus agreements\u003c/a\u003e.\u003c/p\u003e\n\n\u003cp\u003e\u003cb\u003e\u003ca id=\"currentMaintainers\"\u003eCurrent Maintainers of this TC Open Repository\u003c/a\u003e\u003c/b\u003e\u003c/p\u003e\n\n\u003cul\u003e\n\n\u003cli\u003e\u003ca href=\"mailto:stefan@hagen.link\"\u003eStefan Hagen\u003c/a\u003e; GitHub ID: \u003ca href=\"https://github.com/sdrees\"\u003esdrees\u003c/a\u003e; WWW: \u003ca href=\"http://hagen.link/\"\u003eIndividual\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"mailto:vdanen@redhat.com\"\u003eVincent Danen\u003c/a\u003e; GitHub ID: \u003ca href=\"https://github.com/vdanen\"\u003evdanen\u003c/a\u003e; WWW: \u003ca href=\"https://www.redhat.com/\"\u003eRed Hat\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"mailto:os@cisco.com\"\u003eOmar Santos\u003c/a\u003e; GitHub ID: \u003ca href=\"https://github.com/santosomar\"\u003esantosomar\u003c/a\u003e; WWW: \u003ca href=\"http://www.cisco.com/\"\u003eCisco\u003c/a\u003e\u003c/li\u003e\n\n\u003c/ul\u003e\n\u003c/div\u003e\n\n\u003cdiv\u003e\u003ch2\u003e\u003ca id=\"aboutOpenRepos\"\u003eAbout OASIS TC Open Repositories\u003c/a\u003e\u003c/h2\u003e\n\n\u003cp\u003e\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://www.oasis-open.org/resources/open-repositories/\"\u003eTC Open Repositories: Overview and Resources\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.oasis-open.org/faq-tc-repo/\"\u003eFrequently Asked Questions\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.oasis-open.org/resources/open-repositories/licenses\"\u003eOpen Source Licenses\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.oasis-open.org/resources/open-repositories/cla\"\u003eContributor License Agreements (CLAs)\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://www.oasis-open.org/resources/open-repositories/maintainers-guide\"\u003eMaintainers' Guidelines and Agreement\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\u003c/p\u003e\n\n\u003c/div\u003e\n\n\u003cdiv\u003e\u003ch2\u003e\u003ca id=\"feedback\"\u003eFeedback\u003c/a\u003e\u003c/h2\u003e\n\n\u003cp\u003eQuestions or comments about this TC Open Repository's activities should be composed as GitHub issues or comments. If use of an issue/comment is not possible or appropriate, questions may be directed by email to the Maintainer(s) \u003ca href=\"#currentMaintainers\"\u003elisted above\u003c/a\u003e.  Please send general questions about TC Open Repository participation to OASIS Staff at \u003ca href=\"mailto:repository-admin@oasis-open.org\"\u003erepository-admin@oasis-open.org\u003c/a\u003e and any specific CLA-related questions to \u003ca href=\"mailto:repository-cla@oasis-open.org\"\u003erepository-cla@oasis-open.org\u003c/a\u003e.\u003c/p\u003e\n\n\u003c/div\u003e\u003c/div\u003e\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/www.csaf.io","html_url":"https://awesome.ecosyste.ms/projects/www.csaf.io","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/www.csaf.io/lists"}