Skip to content

Improve threat modeling mediated flow gates#1538

Open
danyili2632 wants to merge 1 commit into
UnitOneAI:mainfrom
danyili2632:improve/threat-model-mediated-flows
Open

Improve threat modeling mediated flow gates#1538
danyili2632 wants to merge 1 commit into
UnitOneAI:mainfrom
danyili2632:improve/threat-model-mediated-flows

Conversation

@danyili2632
Copy link
Copy Markdown

Summary

  • add mediated, sidecar, local IPC, and in-process flow modeling guidance to trust boundary discovery
  • add trust model, communication type, and delegation context fields to DFD annotations
  • add CI/CD artifact integrity gates for provenance, signature verification, tag immutability, digest pinning, and OIDC trust scope
  • extend output with a flow annotation table for non-point-to-point architectures

Bounty

Addresses #1532.

I have read and agree to the CONTRIBUTING.md bounty terms. Preferred payment method can be provided privately after maintainer acceptance.

Validation

  • git diff --check

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant