Skip to main content

CII Best Practices Badge

The CII Best Practices Badge is a certification provided by the OpenSSF to assess whether an open source project adopts a set of security-focused best development practices. Through a systematic evaluation, the badge helps projects identify and improve the security and quality aspects of their development processes.

Metrics Model

Badge Level

Badge LevelDefinitionScoreDescription
Gold BadgeThe project meets all gold criteria10A significant achievement for the project, requiring participation from multiple developers
Silver BadgeThe project meets all silver criteria7The project has reached a high level of security practice
Passing BadgeThe project meets all passing criteria5Even achieving the passing standard is a significant accomplishment
In ProgressThe project is working towards a passing badge2The project is actively improving its development practices

Assessment Criteria

The OpenSSF Best Practices badge has three levels: passing, silver, and gold. We award full points to projects that meet the gold criteria, which is a significant achievement that requires the involvement of multiple developers in the project.

Lower scores represent projects that have met the silver criteria, the passing criteria, or are working towards a passing badge, with scores increasing as more criteria are met. It is important to note that even meeting the passing criteria is a significant achievement.

Data Source

The data for this metric is queried from https://www.bestpractices.dev/, and the project's badge status is obtained through the OpenSSF Best Practices Badge API.

Applying for the OpenSSF Best Practices Badge

If you wish to apply for the OpenSSF Best Practices Badge for your project, please visit the following links:

Copyright © 2023 OSS compass. All Rights Reserved.