Since this group is starting, here we can consolidate ideas and proposals for initiatives to run on 2024. 🙌 ### Ideas - Support initiatives from the OpenSSF [Best Practices for Open Source Developers Working Group](https://github.com/ossf/wg-best-practices-os-developers). Suggested by @ctcpip in [this comment](https://github.com/expressjs/security-wg/pull/5#discussion_r1516617066) - Support [Allstar](https://github.com/ossf/allstar#what-is-allstar) initiative. Suggested by @ctcpip in [this comment](https://github.com/expressjs/security-wg/pull/5#discussion_r1516618756) - Add a Security Guidelines for Express community middleware. Suggested by @UlisesGascon - Handle security releases in private using a private fork (scenarios like update libraries + express and so on). Suggested by @wesleytodd Please, add your ideas as comments to this issue or react to the existing ones.
Since this group is starting, here we can consolidate ideas and proposals for initiatives to run on 2024. 🙌
Ideas
Please, add your ideas as comments to this issue or react to the existing ones.