This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Project Reviews Guideline

From OWASP
Jump to: navigation, search
OWASP Project Header.jpg

Purpose

Project Reviews is a process within OWASP to help evaluate the health and quality of OWASP projects. The evaluation is based on a defined criteria which attempts to find out the progress and at which stage of development are the projects.

This is the original plan https://www.owasp.org/index.php/Proposal_Project_Review_QA_Approach

Background

Projects are divided in 3 main categories:

  • Code
  • Tools
  • Documentation

These are the 3 main development classifications

  • Incubators
  • LAB
  • Flagship


Quality of a Code/Tool projects

This kind of evaluation requires more work. It is necessary to download, install and smoke test the project.

The criteria to evaluate the minimum quality of a project is very simple:

For Code and Tools

For projects holding Flagship status, we closely monitor their health every 6 months on the following, among other key indicators:

  • Can the project be built correctly?
  • Does the project has any activity(commits) in the last 6 months?
  • Does the project had any releases in the last 6 months?
  • Has the project leaders updated his wiki or website to reflect latest releases?

For Documentation

For this part, we are working on the development of an adequate assessment criteria The following is a draft of the new process proposal: [Proposal for Reviewing OWASP Document projects]


Presentation

https://soundcloud.com/owasp-podcast/owasp-project-reviews-with-johanna-curiel

Project Review Team

Project Coordinator: Claudia.Aviles-Casanovas

Thank you to our season reviewers such as:

Thank you to Norman Yue who helped us acquired the JIRA for project reviews

Openhub

About the Black Duck Open Hub

The Black Duck Open Hub (formerly Ohloh.net) is an online community and public directory of free and open source software (FOSS), offering analytics and search services for discovering, evaluating, tracking, and comparing open source code and projects. Open Hub Code Search is free code search engine indexing over 21,000,000,000 lines of open source code from projects on the Black Duck Open Hub.

Use Openhub to have an overview of OWASP code and tools activity levels

Email List

Project Email List https://groups.google.com/a/owasp.org/forum/?hl=en#!forum/projects-task-force