zlacker

[parent] [thread] 0 comments
1. shadow+(OP)[view] [source] 2022-01-27 18:58:35
> If only specific builds of software that are on a vendor-sanctioned allowlist

Yes, but for government software this is a bog-standard approach. Not even "the source code is publicly viewable to everyone" is sufficient scrutiny to pass government security muster; specific code is what gets cleared, and modifications to that code must also be cleared.

[go to top]