-
Notifications
You must be signed in to change notification settings - Fork 567
Open
Labels
kind/bugSomething isn't workingSomething isn't working
Description
Describe the bug
Looking for some help to understand why OpenSSF Scorecard check for Code-Review on Openssl is marked as a zero https://securityscorecards.dev/viewer/?uri=github.com/openssl/openssl when I look at the recent commits I see associated PRs. I am not understanding the openssf code itself to figure this out. Has anyone else noticed an inconsistency like this and have thoughts on figuring out why?
Reproduction steps
Steps to reproduce the behavior:
- Run OpenSSF Scorecard on https://github.com/openssl/openssl
- Manually review the recent commits to see if they have an approved PR.
Expected behavior
I expect the score to be better since when I look at the latest 30 commits I find approved PRs associated with each commit
Metadata
Metadata
Assignees
Labels
kind/bugSomething isn't workingSomething isn't working
Type
Projects
Status
No status