From 7c190519ce9f93514ef6193bacd8c43468c78aca Mon Sep 17 00:00:00 2001 From: Ray Luo Date: Wed, 20 Dec 2023 11:10:07 -0800 Subject: [PATCH] It took a long time to figure this out --- threat-model-review.txt | 15 +++++++++++++++ 1 file changed, 15 insertions(+) create mode 100644 threat-model-review.txt diff --git a/threat-model-review.txt b/threat-model-review.txt new file mode 100644 index 00000000..11dd4ff4 --- /dev/null +++ b/threat-model-review.txt @@ -0,0 +1,15 @@ +How to perform Threat Model review +================================== + +Note to MSAL Python team. + +1. Update the self-attestation here: + https://msazure.visualstudio.com/One/_git/ID-InfraSec-ThreatModels?path=%2Fsrc%2FThreatModels%2FAuth%20Client%2FMSAL%20Python&version=GBmaster&_a=contents + + (You can NOT use the "Edit" button in the top right corner of the binary file. + You must clone the repo locally, and use git to update the file.) + +2. Create a PR for it. + +3. Create a placeholder review meeting at https://threatmodelingportal.azurewebsites.net/ +