Exploring Some Essential Security Checks for Any Open Source Go Project - Cosmin Cojocar, Google
Description:
Discover essential security checks for open source Go projects in this informative conference talk by Cosmin Cojocar from Google. Explore open source tools like gosec, govulncheck, and sigstore/cosign that simplify enhancing project security for maintainers. Learn about code security analysis, dependency vulnerability scanning, and supply chain security through real-world examples from the gosec project. Gain insights into maintaining robust security practices while consistently releasing new versions of open source Go projects.
Exploring Essential Security Checks for Open Source Go Projects