The OWASP Game Security Framework (OGSF) is a community-driven project, and contributions are welcome from across the game development and security communities.
We welcome input from:
- game developers and technical leads
- application security and product security professionals
- penetration testers and red teamers
- anti-cheat, platform, backend, and live operations engineers
- researchers, students, and technical writers
- anyone with practical experience in securing games and connected game ecosystems
You can contribute in several ways:
review the framework and provide feedback on clarity, scope, and usefulness
suggest improvements to requirements, terminology, and structure
report gaps, inconsistencies, or unclear guidance
propose mappings to relevant OWASP projects or related standards
contribute examples, use cases, and verification ideas
submit pull requests for documentation and content improvements
help improve the project through peer review and community discussion
We encourage community discussion and public review.
Join the OWASP Slack channel:
#game-security-framework
This is the main community channel for discussion, questions, feedback, and collaboration on the project.
If you would like to contribute:
Review the current project content and open discussions
Share feedback through the project’s GitHub issues or discussions
Submit proposed changes through pull requests where appropriate
Join the OWASP Slack channel to collaborate with the project community
Please try to keep contributions:
clear and practical
technically accurate
relevant to game product security
aligned with the project scope and structure
At this stage, the project particularly welcomes contributions on:
requirement clarity and wording
level structure and verification intent
game-specific security scenarios and examples
multiplayer, backend, economy, and client trust boundary concerns
mappings and alignment with related OWASP resources
general editorial improvements and consistency
Please engage respectfully and constructively. As an OWASP project, this community is expected to follow OWASP community standards and maintain a professional, collaborative environment.
Recognizing key contributors who have made significant impact on this project.