aiwg
Version:
Cognitive architecture for AI-augmented software development with structured memory, ensemble validation, and closed-loop correction. FAIR-aligned artifacts, 84% cost reduction via human-in-the-loop, standards adopted by 100+ organizations.
19 lines (12 loc) • 422 B
Markdown
# Dependency Policy
## Goals
Reduce supply chain risk by controlling sources, versions, and updates.
## Rules
- Pin versions and verify signatures when available
- Maintain SBOM and update per iteration
- Apply security updates on a fixed cadence
- Block known-bad licenses if applicable
## Processes
- New dependency review checklist
- Periodic audit and removal of unused deps
- Automated alerts on CVE advisories