← Back to Controls
Controls
Security Controls
Security requirements.
Latest version
AGVS Draft v0.1This section is part of the current public OSCF documentation draft.
SEC-01
Verification shall not be the only control.
SEC-02
Challenges shall be session-bound.
SEC-03
Challenges shall be invalidated after use.
SEC-04
Rate limiting shall be applied.
SEC-05
Challenge integrity shall be protected.