Skip to content

RFC: MAS-Assets#3755

Draft
Diolor wants to merge 32 commits into
OWASP:masterfrom
Diolor:mas-assets
Draft

RFC: MAS-Assets#3755
Diolor wants to merge 32 commits into
OWASP:masterfrom
Diolor:mas-assets

Conversation

@Diolor
Copy link
Copy Markdown
Collaborator

@Diolor Diolor commented Mar 31, 2026

Description

This RFC intends to propose MAS-Assets.
MAS-Assets are a more extensive way to describe what a MAS-TEST (or demo DEMO) cover/"target".

In this PR:

  • The prerequisites/identify-sensitive-data.md has been used as a basis and is now rewritten to describe Assets and overall sensitive data. I recommend you start reviewing this PR from this file.
  • A sample description of MAS-ASSET-1 is written. Descriptions 2-6 are missing from this MVP/RFC.
  • Tests as MASTG-TEST-0315, 0316, and 0320 showcase how MAS-ASSETs could be used in the metadata.
  • Correct file names and paths were out of scope of this PR. Emphasis should rather be given to the concept itself.

Proposed OWASP-MAS Taxonomy (excluding KNOW)

(click to zoom)

Untitled (1)

@Diolor Diolor requested review from cpholguera and sushi2k March 31, 2026 12:34
@Diolor Diolor self-assigned this May 17, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant