[Owasp-leaders] Measuring GitHub.com security

dinis cruz dinis.cruz at owasp.org
Thu Jan 26 14:51:50 UTC 2012

GitHub has a pretty good security page with lots of good practices in there.

But my question is 'how do we measure it'?

Ideally I would like to have a score card that showed how good (or
bad) their security profile is (this scorecard would allow me to
compare it with another services or even with internal security

I'm also keen to know about the Github.com web app security (for
example vs the OWASP Top 10)

Dinis Cruz

More information about the OWASP-Leaders mailing list