O
OSCF Handbook Accessible cybersecurity standards
Draft v0.1 Repo Framework Docs Overview
← Back to Controls

Controls

Security Controls

Security requirements.

Latest version

AGVS Draft v0.1

This section is part of the current public OSCF documentation draft.

SEC-01

Verification shall not be the only control.

SEC-02

Challenges shall be session-bound.

SEC-03

Challenges shall be invalidated after use.

SEC-04

Rate limiting shall be applied.

SEC-05

Challenge integrity shall be protected.

Draft section of the OSCF public documentation.