Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add info regarding cloning using HTTPS/SSH in readme #1375

Open
Umang01-hash opened this issue Jan 8, 2025 · 1 comment
Open

Add info regarding cloning using HTTPS/SSH in readme #1375

Umang01-hash opened this issue Jan 8, 2025 · 1 comment
Assignees
Labels
documentation Improvements or additions to documentation

Comments

@Umang01-hash
Copy link
Contributor

Umang01-hash commented Jan 8, 2025

Is your feature request related to a problem? Please describe.
Screenshot 2025-01-08 at 12 39 02 PM

When going through the Best Practices followed for OpenSource Projects on : https://www.bestpractices.dev/en/projects/8099

I found this .

The project MUST use a delivery mechanism that counters MITM attacks. Using https or ssh+scp is acceptable.

An even stronger mechanism is releasing the software with digitally signed packages, since that mitigates attacks on the distribution system, but this only works if the users can be confident that the public keys for signatures are correct and if the users will actually check the signature.

Describe the solution you'd like
To further ensure users are aware that they can securely clone the repository, we should update the README.md to include instructions for cloning using HTTPS and SSH.

@ccoVeille
Copy link
Contributor

Didn't #1372 fix it?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
documentation Improvements or additions to documentation
Projects
None yet
Development

No branches or pull requests

2 participants