997 B
997 B
If you are working on this file you need to read docs/ARCHITECTURE_VEXER.md and ./AGENTS.md).
TASKS
| Task | Owner(s) | Depends on | Notes |
|---|---|---|---|
| VEXER-FMT-CSAF-01-001 – CSAF normalizer foundation | Team Vexer Formats | VEXER-CORE-01-001 | DONE (2025-10-17) – Implemented CSAF normalizer + DI hook, parsing tracking metadata, product tree branches/full names, and mapping product statuses into canonical VexClaims with baseline precedence. Regression added in CsafNormalizerTests. |
| VEXER-FMT-CSAF-01-002 – Status/justification mapping | Team Vexer Formats | VEXER-FMT-CSAF-01-001, VEXER-POLICY-01-001 | TODO – Normalize CSAF product_status + justification values into policy-aware enums with audit diagnostics for unsupported codes. |
| VEXER-FMT-CSAF-01-003 – CSAF export adapter | Team Vexer Formats | VEXER-EXPORT-01-001, VEXER-FMT-CSAF-01-001 | TODO – Provide CSAF export writer producing deterministic documents (per vuln/product) and manifest metadata for attestation. |