Skip to main content

10 docs tagged with "supply-chain"

View all tags

Portfolio App: Security

Security posture for the Portfolio App: threat surface, enforceable SDLC controls, and public-safe content and deployment practices.

Portfolio Docs: Security

Security posture for the Portfolio Docs App: threat surface, enforceable SDLC controls, supply chain hygiene, and public publication safety.

Runbook: Dependabot PR CI Remediation

Deterministic workflow to diagnose failing Dependabot pull requests, reproduce failures locally, apply fixes, and push updates back to unblock required checks.

Security Posture and Secure SDLC

Threat models, secure SDLC controls, supply chain hygiene, and security evidence practices that demonstrate a security-first delivery process.

Threat Model: Portfolio App

STRIDE threat model for the Portfolio App (Next.js): trust boundaries, assets, threats, mitigations, and residual risks aligned to enterprise SDLC controls.

Threat Model: Portfolio Docs App

Threat model for the Docusaurus documentation platform, focused on supply chain risk, CI integrity, public content safety, and deployment surface controls.