Skip to content

Implement Security Baseline criterion OSPS-AC-01 #298

@mesembria

Description

@mesembria

User Story Description
Criterion OSPS-AC-01 requires checking that collaborators having access to sensitive data have multi-factor authentication enabled.

This might be tricky, as the only way to implement this is by adding permissions to Minder's GitHub app related to the org.

Acceptance Criteria
Repository mindersec/minder-rules-and-profiles has a rule type implementing this criterion under baseline/rule-types/osps-ac-01.yaml.

Additional Resources
Baseline Rule Status in Minder

Metadata

Metadata

Assignees

No one assigned

    Labels

    P0Fix Now: These are urgent issues that preempt other work in the current sprint

    Projects

    Status

    Ready

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions