NIST SSDF: PW — Security Tested
errorssdf_pw_security_tested
Executable code is security-tested before release (PW.8).
Formula
G(Release → P(security_tested)) Why it matters
SSDF PW.8: test executable code to identify vulnerabilities and verify compliance with security requirements.
Examples
passes the practice's evidence is present
fails the required secure-development step is absent
Use it
ponens policies add ssdf_pw_security_tested --into ./trace.json
ponens trace check ./trace.json