Feature Suggestion | Link independent security audits to tools #1071

Open
opened 2019-08-01 03:34:04 +00:00 by nitrohorse · 6 comments
nitrohorse commented 2019-08-01 03:34:04 +00:00 (Migrated from github.com)

Description:

From @Mikaela on Wire's PTIO group:

Should we list independent security audits either in a separate file like source_code.md or together with the tools?

Related to: https://github.com/privacytoolsIO/privacytools.io/issues/753

From the comments:

## Description: From @Mikaela on Wire's PTIO group: > Should we list independent security audits either in a separate file like [source_code.md](https://github.com/privacytoolsIO/privacytools.io/blob/master/source_code.md) or together with the tools? Related to: https://github.com/privacytoolsIO/privacytools.io/issues/753 From the comments: - [x] [Keybase's 2019 audit](https://keybase.io/docs-assets/blog/NCC_Group_Keybase_KB2018_Public_Report_2019-02-27_v1.3.pdf) by the [NCC Group](https://www.nccgroup.trust) [IPFS mirror](https://ipfs.privacytools.io/ipfs/QmSuz9YGsCuAvFzsqFZoRaQ9ejtgojrmbq7RtQN27qHCu8/NCC_Group_Keybase_KB2018_Public_Report_2019-02-27_v1.3.pdf) - [x] [Wire](https://wire.com/en/security/#audits) - [x] [Signal](https://eprint.iacr.org/2016/1013.pdf) - [ ] [OpenSSL](https://ostif.org/the-ostif-and-quarkslab-audit-of-openssl-is-complete/) - [ ] [OpenVPN](https://ostif.org/the-openvpn-2-4-0-audit-by-ostif-and-quarkslab-results/) - [ ] [VeraCrypt](https://ostif.org/the-veracrypt-audit-results/)
Mikaela commented 2019-08-01 12:15:03 +00:00 (Migrated from github.com)
IPFS mirror of the Keybase audit https://ipfs.privacytools.io/ipfs/QmSuz9YGsCuAvFzsqFZoRaQ9ejtgojrmbq7RtQN27qHCu8/NCC_Group_Keybase_KB2018_Public_Report_2019-02-27_v1.3.pdf
Mikaela commented 2019-08-01 14:17:57 +00:00 (Migrated from github.com)
Wire: ~~https://crysp.uwaterloo.ca/opinion/wire/~~ https://wire.com/en/security/#audits
nitrohorse commented 2019-08-03 05:13:51 +00:00 (Migrated from github.com)
Signal: https://eprint.iacr.org/2016/1013.pdf
Mikaela commented 2019-08-11 14:00:35 +00:00 (Migrated from github.com)

Maybe some of them can be put into related information in the IM page?

Maybe some of them can be put into related information in the IM page?
Mikaela commented 2019-08-12 09:27:17 +00:00 (Migrated from github.com)

I am going to take part of this as per my previous comment, together with #1137 and #967.

I am going to take part of this as per my previous comment, together with #1137 and #967.
nitrohorse commented 2019-08-16 02:16:03 +00:00 (Migrated from github.com)

Maybe some of them can be put into related information in the IM page?

Yeah I’m wondering how we should link to these from their listings... as a badge?

> Maybe some of them can be put into related information in the IM page? Yeah I’m wondering how we should link to these from their listings... as a badge?
This repo is archived. You cannot comment on issues.
No Milestone
No Assignees
1 Participants
Due Date
The due date is invalid or out of range. Please use the format 'yyyy-mm-dd'.

No due date set.

Dependencies

No dependencies set.

Reference: privacyguides/privacytools.io#1071
No description provided.