principle @community/principle-owasp-data-integrity-failures

Owasp Data Integrity Failures

Deserialized data from untrusted sources must be validated against a strict schema before use. Software updates, packages, and CI/CD pipeline steps must verify cryptographic signatures.…

Skill
@community
Domain
security
Version
1.0.0
Quality
0.0
Edges
0 out · 0 in
Tokens
145/427/731
$ aoe install @community/principle-owasp-data-integrity-failures

Projection

Always in _index.xml · the agent never has to ask for this.

OwaspDataIntegrityFailures [principle] v1.0.0

OWASP Top 10 A08:2021 (merged Insecure Deserialization + Software and Data Integrity Failures) — code and infrastructure that does not protect against integrity violations in software updates, critical data, and CI/CD pipelines.

Deserialized data from untrusted sources must be validated against a strict schema before use. Software updates, packages, and CI/CD pipeline steps must verify cryptographic signatures. Unsigned or unverified data must never be used to make authorization or code-execution decisions.

Source

aoe-engine/examples/frontend-design/primes/compiled/@community/principle-owasp-data-integrity-failures/atom.yaml