Results 209 comments of Justin Cappos

I'm a little confused about this issue. Why create this when https://github.com/cncf/tag-security/issues/1236 exists? (Sorry, if I'm missing something.)

> The first draft is now complete for wider review. Where is the draft located?

This is just my two cents, but I'd love to have this start more as an exploratory thought from your group instead of a TAG Security product. I think people...

I'd like to self nominate as a Tech Lead for TAG Security and Compliance. I created and facilitated the assessment process and have been a Tech Lead since we first...

I'd like to strongly endorse @mlieberman85 @brandtkeller who are listed above as well as @jkjell who ran for a chair seat on TAG Security and Compliance ([his nomination is here](https://github.com/cncf/toc/issues/1661#issuecomment-2859614188)),...

I'd recommend we just have one blanket item approved for all security assessments instead of going to the TOC for every project's assessment request. On Thu, Jun 19, 2025 at...

I'm not opposed to having a single, unique identifier. Who defines those? Would that be curated along with the spec, in a TAP, or somewhere else?

> I don't see a better place than the spec if we want things to be more standardized. Yes, but the spec is slllloooooowwww to update (wait for @mnm678 to...

> I’m very much interested in contributing and a Cloud Sec, I’m going through the doc at https://github.com/cncf/tag-security/tree/main/community/assessments/guide Okay @SophiaUgo, please send your conflict statement when ready.