-
Notifications
You must be signed in to change notification settings - Fork 8
Design a community connector contract for SSDLC artifacts #23
Copy link
Copy link
Open
Labels
area: integrationsCI/CD and external workflow integrationsCI/CD and external workflow integrationscommunity-readyScoped contribution ready for community collaborationScoped contribution ready for community collaborationenhancementNew feature or requestNew feature or requesthelp wantedExtra attention is neededExtra attention is neededpriority: p1Important follow-up after P0 foundationsImportant follow-up after P0 foundations
Description
Activity
Metadata
Metadata
Assignees
Labels
area: integrationsCI/CD and external workflow integrationsCI/CD and external workflow integrationscommunity-readyScoped contribution ready for community collaborationScoped contribution ready for community collaborationenhancementNew feature or requestNew feature or requesthelp wantedExtra attention is neededExtra attention is neededpriority: p1Important follow-up after P0 foundationsImportant follow-up after P0 foundations
Why this matters
DocSentinel becomes more valuable when it can sit naturally inside existing SSDLC workflows. Every team has different tools: GitHub/GitLab, Jira, CI scanners, SBOM generators, SAST/DAST platforms, ticketing systems, and evidence repositories.
From first principles: open-source projects scale integrations best when the core defines a stable adapter contract and the community can add connectors without touching core assessment logic.
Community help wanted
We need a public connector contract and starter adapters for common SSDLC artifacts.
Suggested scope
Acceptance criteria