Results 139 comments of Justin Cappos

I'd like to supplement my prior comment about this case: > Masking files where read access isn't universal from git-tuf by .gitignore. This would also hide it from git... This...

> Some prior art in [git-crypt](https://github.com/AGWA/git-crypt) using [Git filters](https://git-scm.com/book/en/v2/Customizing-Git-Git-Attributes). This pretty effectively prevents checking in the unencrypted version. Thanks! I agree that @znewman01 's suggestion to use git filters makes...

This makes sense to me. Certainly, we should be using gittuf during gittuf development for this to happen. :)

Note to other readers, this is a quick pilot of the Security Pals process that other projects will go through in the next few months. I'm assigning other folks (the...

> This is awesome, is there anything we can do for some of the students who participate in the program? Swag? Encourage them to apply for scholarships for kubecon etc?...

> Great initiative @JustinCappos I'm interested to collaborate in the capacity necessary for assessments, technical mentorship, program management etc. Okay, great. It will be great to have some folks from...

I have read the security reviewer guide and have no conflicts

As per @TheFoxAtWork 's reply above, a security assessment will not be performed. So this issue will be closed. > @xmulligan - I've asked @lumjjb @achetal01 @sublimino to convert this...

Please ping us once you have a draft of the self-assessment and we can start to put a team together.

This looks stalled. If not, please update the issue and I'll move it to the appropriate part of the queue