Skip to content

Replace security placeholder issues with maintained guidance - #245

Merged
melonakos merged 1 commit into
mainfrom
docs/security-reference-guide
Sep 10, 2026
Merged

melonakos merged 1 commit into
mainfrom
docs/security-reference-guide

Conversation

@melonakos

Copy link
Copy Markdown
Collaborator

Consolidate ten generic security reference issues (#190–199) into a maintained guide with project-specific completion evidence. Link the guide from the WG landing page and security issue form. Preserve original issues as historical sources, including their examples and access-coordination details.

Update guidance against current GitHub documentation: repository-scoped GITHUB_TOKEN where sufficient, current secret-scanning behavior, and current CVE-Bin-Tool location. Preserve the recorded Scorecard recommendation without introducing a new release gate. No project is declared compliant and no repository security settings change.

After merge, close the ten generic placeholders as superseded reference material, with a pointer to the guide. Actual project security tasks remain open. All ten were refreshed and have no comments or project assignments.

Validation: local file/section links, document structure, YAML parsing and whitespace checks pass. Required GitHub checks must pass before merge. PDFs unchanged.

The user authorized continued cleanup and push/merge after checks. Use the existing administrator review exception; this is not independent CODEOWNER approval.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant