OpenSSF Scorecard - Security health metrics for Open Source
copied from cf-post-staging / scorecardScorecard is an automated tool that assesses a number of important heuristics ("checks") associated with software security and assigns each check a score of 0-10.