An open, vendor-neutral standard for verifying open-source intelligence. OOVS v0.1.0 defines ten testable requirements published simultaneously as normative text and machine-readable data, with one acceptance test per requirement, a portable assessment schema, and continuous validation.
Current release: OOVS v0.1.0, released 2026-08-05, tag v0.1.0, at https://github.com/OWASP/OWASP-Open-Source-Intelligence-Standard/releases/tag/v0.1.0
The release manifest records every canonical file with a SHA-256 digest, so a published release is a fixed and verifiable set of bytes. To verify locally, install the pinned dependency from requirements-validation.txt and run scripts/validate_assets.py.
Expected output: 6 schemas, 5 canonical artefacts, 5 expected-failure fixtures, 10 prose-to-data requirement pairs, 92 internal links, and 23 manifest digests validated.
Cite OOVS v0.1.0 with any published result, and keep the assessment scope attached to it.
Project Leader
Project leader for the OWASP Open Source Intelligence Standard. Designed the OOVS assurance baseline and the specification-as-code pipeline that keeps its normative text, machine-readable requirements, acceptance tests, and hash-pinned release manifests provably consistent in continuous integration. Interests: OSINT verification, provenance and source-origin independence, attribution, and accountable use of AI in analytic workflows.