diff --git a/.github/dependabot.yml b/.github/dependabot.yml new file mode 100644 index 0000000..8f35efd --- /dev/null +++ b/.github/dependabot.yml @@ -0,0 +1,7 @@ +version: 2 +updates: + - package-ecosystem: github-actions + directory: / + schedule: + interval: weekly + time: '00:45' diff --git a/.github/workflows/validate-owasp-metadata.yaml b/.github/workflows/validate-owasp-metadata.yaml new file mode 100644 index 0000000..3c148ca --- /dev/null +++ b/.github/workflows/validate-owasp-metadata.yaml @@ -0,0 +1,27 @@ +name: Validate OWASP entity metadata + +on: + pull_request: + paths: + - '*.owasp.yaml' + push: + paths: + - '*.owasp.yaml' + +permissions: + contents: read + +concurrency: + cancel-in-progress: true + group: ${{ github.repository }}-${{ github.workflow }}-${{ github.ref }} + +jobs: + validate-metadata: + runs-on: ubuntu-latest + + steps: + - name: Checkout code + uses: actions/checkout@v5 + + - name: Validate metadata file + uses: owasp/nest-schema/.github/actions/validate@a733198b4a942eb12d3ee8629cd9e0d409b1b2b9 diff --git a/project.owasp.yaml b/project.owasp.yaml new file mode 100644 index 0000000..9989a99 --- /dev/null +++ b/project.owasp.yaml @@ -0,0 +1,42 @@ +audience: + - builder +leaders: + - name: Timo Pagel + email: timo.pagel@owasp.org + github: wurstbrot + - name: Aryan Prasad + email: aryan.prasad@owasp.org +level: 3 +license: + - GPL-3.0 + - MIT +name: OWASP Devsecops Maturity Model +pitch: Description for OWASP Devsecops Maturity Model +repositories: + - name: www-project-devsecops-maturity-model + url: https://github.com/OWASP/www-project-devsecops-maturity-model + description: OWASP Foundation Web Repository + - name: collector-confluence + url: https://github.com/devsecopsmaturitymodel/collector-confluence + description: Collector for metric Analyzer + - name: collector-github + url: https://github.com/devsecopsmaturitymodel/collector-github + - name: DevSecOps-MaturityModel + url: https://github.com/devsecopsmaturitymodel/DevSecOps-MaturityModel + - name: DevSecOps-MaturityModel-custom + url: https://github.com/devsecopsmaturitymodel/DevSecOps-MaturityModel-custom + - name: DevSecOps-MaturityModel-data + url: https://github.com/devsecopsmaturitymodel/DevSecOps-MaturityModel-data + - name: metricAnalyzer + url: https://github.com/devsecopsmaturitymodel/metricAnalyzer + - name: metricCA + url: https://github.com/devsecopsmaturitymodel/metricCA + - name: metricca-data + url: https://github.com/devsecopsmaturitymodel/metricca-data + description: This repository contains sample data for metricAnalyzer. It is filled by collectors like collector-confluence +tags: + - builder + - documentation + - custom-tag-1 +type: documentation +website: https://owasp.org/www-project-devsecops-maturity-model