Skip to content
GitLab
Projects Groups Topics Snippets
  • /
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
  • Sign in
  • autosubmit autosubmit
  • Project information
    • Project information
    • Activity
    • Labels
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributor statistics
    • Graph
    • Compare revisions
  • Issues 338
    • Issues 338
    • List
    • Boards
    • Service Desk
    • Milestones
  • Merge requests 21
    • Merge requests 21
  • Deployments
    • Deployments
    • Releases
  • Monitor
    • Monitor
    • Incidents
  • Analytics
    • Analytics
    • Value stream
    • Repository
  • Wiki
    • Wiki
  • Snippets
    • Snippets
  • Activity
  • Graph
  • Create a new issue
  • Commits
  • Issue Boards
Collapse sidebar
  • Earth SciencesEarth Sciences
  • autosubmitautosubmit
  • Issues
  • #884
Closed
Open
Issue created Oct 07, 2022 by Bruno de Paula Kinoshita@bdepaulaMaintainer

[documentation] Add a security policy

Security policies in Open Source projects tell users, site admins, managers, developers, etc., how to contact the project in case of a security problem. These policies can also either document, or have links to documentation, what the project does regarding security. For example, the text may include compliance with security standards like HIPAA security rules, ISO 27001, etc.

We can fix it by adding a simple SECURITY.md to this repository. Or we can go further and add a section to our docs about security and compliance.

Note that this is not a replacement for security features of Autosubmit, like authorization, authentication, data encryption, etc. This is about security at the project level (doesn't mean we cannot say how the code is made safe to use).

Examples:

  • https://stackstorm.com/security/ & https://github.com/StackStorm/st2/blob/master/SECURITY.md
  • https://github.com/cylc/cylc-flow/blob/master/SECURITY.md
  • https://github.com/galaxyproject/galaxy/blob/dev/SECURITY.md
  • https://github.com/arvados/arvados/blob/main/SECURITY.md
  • https://arvados.org/compliance/

Refs:

  • https://docs.github.com/en/code-security/getting-started/adding-a-security-policy-to-your-repository
Edited Oct 07, 2022 by Bruno de Paula Kinoshita
Assignee
Assign to
Time tracking