Skip to content

3.a.0 Administrative Security Review

This issue documents the Administrative Security Review performed against the main branch of the nshm-alaska project for a provisional release.

Below is a summary of the various components I've reviewed - those with checkmarks indicate that I found no admin/security issues and nothing needs to be resolved, or that any issues I flagged have since been resolved. Those currently un-checked indicate outstanding issues that need to be addressed or resolved.

  • ReadMe - Initial review complete with several issues that need to be addressed
  • Disclaimer - Review complete with no issues
  • License - Initial review complete with no issues - links to USGS copyright policy and creative commons license language work.
  • Metadata (code.json) - code.json has all necessary metadata fields
  • Security review for absolute paths/personal data
    • Files - no sign of personally identifiable information, absolute paths, internal server host names, or IP addresses
    • Commit list - no sign of personally identifiable information, absolute paths, internal server host names, or IP addresses
  • Numerous ReadMe files within the source subdirectories that seem to serve as internal notetaking/coordination, rather than user documentation.
Edited by Andrew J. Makdisi