code passes security check #291
Labels
No labels
0 points
0.5 points
1 point
13 points
2 points
21 points
3 points
34 points
5 points
55 points
8 points
api service
blocked
component: fediversity panel
component: nixops4
documentation
estimation high: >3d
estimation low: <2h
estimation mid: <8h
infinite points
productisation
project-management
question
role: application developer
role: application operator
role: hosting provider
role: maintainer
security
technical debt
testing
type unclear
type: bug
type: deliverable
type: key result
type: objective
type: task
type: user story
user experience
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Blocks
Depends on
#228 [D2.3] brought into production [2027-11-01]
fediversity/fediversity
#24 Disable root SSH authentication altogether
fediversity/fediversity
#26 Set up a secret management scheme
fediversity/fediversity
#87 Replace snakeoil-key with proper secret
fediversity/fediversity
#127 Keeping applications' nix packages up-to-date
fediversity/fediversity
#155 Address CI friction between security and caching
fediversity/fediversity
#198 switch panel db from sqlite to postgresql
fediversity/fediversity
#272 support password-protected personal SSH keys for deploying services in development
fediversity/fediversity
#295 limit security impact of SSH access to service VMs
fediversity/fediversity
#313 ProxmoX back-end supports multiple users
fediversity/fediversity
#463 secrets may be handled securely w.r.t. use in PRs
fediversity/fediversity
#493 portable ephemeral state
fediversity/fediversity
#614 catch up on nixpkgs updates
fediversity/fediversity
#633 nodes can identify one another
fediversity/fediversity
Reference: fediversity/fediversity#291
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
In order to verify Fediversity may be put into production, we should have our code pass an independent security compliance audit in adherence to the standards set out in the General Data Protection Regulation (GDPR).
To ensure this serves our goals, this check should cover code spanning at least the features laid out in:
Achieving this would involve at least:
securityto security auditsecurity auditto code passes security auditcode passes security auditto code passes security check