OWASP CLE Aims to Standardize Lifecycle Events for Secure Supply Chains

 OWASP's new project, Common Lifecycle Enumeration (CLE), aims to standardize product lifecycle event encodings, such as end-of-life or end-of-support. With the growing need for lifecycle management due to regulations like the EU Cyber Resilience Act, CLE will help manufacturers and customers manage the lifecycle of hardware and software. The project supports automation and integration into platforms like OWASP Dependency Track, ensuring better transparency and security across the supply chain. CLE will eventually become part of ECMA International standards.

https://owasp.org/blog/2024/11/26/lifecycle-events-are-part-of-the-secure-supply-chain.html

Comments

Popular posts from this blog

Endor Labs Announces Integrated SAST Offerings

OWASP Releases Enhanced Dependency-Check Tool with Advanced Tagging and Policy Management Features

The Hidden Cost of DevSecOps: Time and Financial Burden of Security on Developers