You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Make it clear great OSS doesn't always meet criteria (#972)
It's great when OSS meets all of these, but we don't want
people to think that only OSS that perfectly meets all
these criteria could be used.
Signed-off-by: David A. Wheeler <[email protected]>
Copy file name to clipboardExpand all lines: docs/Concise-Guide-for-Evaluating-Open-Source-Software.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,7 +2,7 @@
2
2
3
3
_by the [Open Source Security Foundation (OpenSSF)](https://openssf.org)[Best Practices Working Group](https://best.openssf.org/), 2025-03-28_
4
4
5
-
As a software developer, before using open source software (OSS) dependencies or tools, identify candidates and evaluate the leading ones against your needs. To evaluate a potential OSS dependency for security and sustainability, consider these questions (all tools or services listed are merely examples):
5
+
As a software developer, before using open source software (OSS) dependencies or tools, identify candidates and evaluate the leading ones against your needs. To evaluate a potential OSS dependency for security and sustainability, consider these questions (all tools or services listed are merely examples, and even great OSS may do poorly on some questions):
0 commit comments