← Policy gallery

NIST SSDF: PW — Security Tested

error

ssdf_pw_security_tested

secure-development security pure_temporal secure-developmentnistssdfsupply-chainpwrag-red

Executable code is security-tested before release (PW.8).

Formula

G(Release → P(security_tested))

Why it matters

SSDF PW.8: test executable code to identify vulnerabilities and verify compliance with security requirements.

Examples

passes the practice's evidence is present

fails the required secure-development step is absent

Use it

ponens policies add ssdf_pw_security_tested --into ./trace.json
ponens trace check ./trace.json