This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "About The Open Web Application Security Project"

From OWASP
Jump to: navigation, search
(Licensing)
Line 1: Line 1:
 
{{OWASP Book|1411702}}
 
{{OWASP Book|1411702}}
 +
<br/>
 +
==Overview==
 +
The Open Web Application Security Project (OWASP) is an open community dedicated to enabling organizations to develop, purchase, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a people, process, and technology problem because the most effective approaches to application security include improvements in all of these areas. We can be found at [[Main Page|www.owasp.org]].
  
 
+
OWASP is a new kind of organization. Our freedom from commercial pressures allows us to provide unbiased, practical, cost-effective information about application security. OWASP is not affiliated with any technology company, although we support the informed use of commercial security technology. Similar to many open-source software projects, OWASP produces many types of materials in a collaborative, open way. The [[OWASP Foundation]] is a not-for-profit entity that ensures the project's long-term success. For more information, please see the pages listed below:
=Overview=
 
 
 
The Open Web Application Security Project (OWASP) is an open community dedicated to enabling organizations to develop, purchase, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a people, process, and technology problem because the most effective approaches to application security include improvements in all of these areas. We can be found at [http://www.owasp.org http://www.owasp.org].
 
 
 
OWASP is a new kind of organization. Our freedom from commercial pressures allows us to provide unbiased, practical, cost-effective information about application security. OWASP is not affiliated with any technology company, although we support the informed use of commercial security technology. Similar to many open-source software projects, OWASP produces many types of materials in a collaborative, open way. The OWASP Foundation is a not-for-profit entity that ensures the project's long-term success. For more information, please see the pages listed below:
 
 
 
 
* [[Contact]] for information about communicating with OWASP
 
* [[Contact]] for information about communicating with OWASP
 
* [[Contributions]] for details about how to make contributions
 
* [[Contributions]] for details about how to make contributions
Line 14: Line 11:
 
* [[OWASP brand usage rules]] for information about using the OWASP brand
 
* [[OWASP brand usage rules]] for information about using the OWASP brand
  
=Structure=
+
==Structure==
 +
The OWASP Foundation is the not-for-profit [http://www.irs.gov/charities/charitable/article/0,,id=96114,00.html 501(c)(3)] entity that provides the infrastructure for the [[OWASP Community]]. The Foundation provides our servers and bandwidth, facilitates projects and chapters, and manages the worldwide [[OWASP AppSec Conference]]s.
  
The OWASP Foundation is the not-for-profit (501c3) entity that provides the infrastructure for the OWASP community. The Foundation provides our servers and bandwidth, facilitates projects and chapters, and manages the worldwide OWASP Application Security Conferences.
+
==Licensing==
 
+
All OWASP materials are available under an approved [[OWASP Licenses|FLOSS license]]. If you opt to become an OWASP [[Membership|member organization]], you can also use the commercial license that allows you to use, modify, and distribute all OWASP materials within your organization under a single license.
=Licensing=
 
 
 
All OWASP materials are available under an approved FLOSS license. If you opt to become an OWASP member organization, you can also use the commercial license that allows you to use, modify, and distribute all OWASP materials within your organization under a single license.
 
  
 
For more information, please see the '''[[OWASP Licenses]]''' page.
 
For more information, please see the '''[[OWASP Licenses]]''' page.
  
=Participation and Membership =
+
==Participation and Membership==
 
+
Everyone is welcome to participate in our [https://lists.owasp.org/mailman/listinfo forums], [[projects]], [[chapters]], and [[conferences]]. OWASP is a fantastic place to learn about application security, to network, and even to build your reputation as an expert.
Everyone is welcome to participate in our forums, projects, chapters, and conferences. OWASP is a fantastic place to learn about application security, to network, and even to build your reputation as an expert.  
 
  
 
If you find the OWASP materials valuable, please consider supporting our cause by becoming an OWASP member. All monies received by the OWASP Foundation go directly into supporting OWASP projects.
 
If you find the OWASP materials valuable, please consider supporting our cause by becoming an OWASP member. All monies received by the OWASP Foundation go directly into supporting OWASP projects.
Line 32: Line 26:
 
For more information, please see the '''[[Membership]]''' page.
 
For more information, please see the '''[[Membership]]''' page.
  
=Projects =
+
==Projects==
 
 
 
OWASP's projects cover many aspects of application security. We build documents, tools, teaching environments, guidelines, checklists, and other materials to help organizations improve their capability to produce secure code.
 
OWASP's projects cover many aspects of application security. We build documents, tools, teaching environments, guidelines, checklists, and other materials to help organizations improve their capability to produce secure code.
  
 
For details on all the OWASP projects, please see the '''[[:Category:OWASP Project|OWASP Project]]''' page.
 
For details on all the OWASP projects, please see the '''[[:Category:OWASP Project|OWASP Project]]''' page.
  
=OWASP Privacy Policy=
+
==Privacy Policy==
 
 
 
Given OWASP’s mission to help organizations with application security, you have the right to expect protection of any personal information that we might collect about our members.
 
Given OWASP’s mission to help organizations with application security, you have the right to expect protection of any personal information that we might collect about our members.
  
In general, we do not require authentication or ask visitors to reveal personal information when visiting our website. We collect Internet addresses, not the e-mail addresses, of visitors solely for use in calculating various website statistics.  
+
In general, we do not require authentication or ask visitors to reveal personal information when visiting our website. We collect Internet addresses, not the e-mail addresses, of visitors solely for use in calculating various website statistics.
  
We may ask for certain personal information, including name and email address from persons downloading OWASP products. This information is not divulged to any third party and is used only for the purposes of:  
+
We may ask for certain personal information, including name and email address from persons downloading OWASP products. This information is not divulged to any third party and is used only for the purposes of:
 
+
* Communicating urgent fixes in the OWASP Materials
* Communicating urgent fixes in the OWASP Materials  
+
* Seeking advice and feedback about OWASP Materials
* Seeking advice and feedback about OWASP Materials  
 
 
* Inviting participation in OWASP’s consensus process and AppSec conferences
 
* Inviting participation in OWASP’s consensus process and AppSec conferences
  
OWASP publishes a list of member organizations and individual members. Listing is purely voluntary and “opt-in”. Listed members can request not to be listed at any time.
+
OWASP publishes a list of member organizations and individual members. Listing is purely voluntary and "opt-in." Listed members can request not to be listed at any time.
 
 
All information about you or your organization that you send us by fax or mail is physically protected. If you have any questions or concerns about our privacy policy, please contact us at [mailto:[email protected] [email protected]]
 
  
 +
All information about you or your organization that you send us by fax or mail is physically protected. If you have any questions or concerns about our privacy policy, please contact us at [mailto:[email protected] [email protected]].
  
 
[[Category:OWASP Guide Project]]
 
[[Category:OWASP Guide Project]]
Line 59: Line 49:
 
[[Category:OWASP Code Review Project]]
 
[[Category:OWASP Code Review Project]]
  
__NOTOC__
+
<!-- __NOTOC__ -->

Revision as of 23:06, 26 July 2008

OWASP Books logo.png This project has produced a book that can be downloaded or purchased.
Feel free to browse the full catalog of available OWASP books.


Overview

The Open Web Application Security Project (OWASP) is an open community dedicated to enabling organizations to develop, purchase, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a people, process, and technology problem because the most effective approaches to application security include improvements in all of these areas. We can be found at www.owasp.org.

OWASP is a new kind of organization. Our freedom from commercial pressures allows us to provide unbiased, practical, cost-effective information about application security. OWASP is not affiliated with any technology company, although we support the informed use of commercial security technology. Similar to many open-source software projects, OWASP produces many types of materials in a collaborative, open way. The OWASP Foundation is a not-for-profit entity that ensures the project's long-term success. For more information, please see the pages listed below:

Structure

The OWASP Foundation is the not-for-profit 501(c)(3) entity that provides the infrastructure for the OWASP Community. The Foundation provides our servers and bandwidth, facilitates projects and chapters, and manages the worldwide OWASP AppSec Conferences.

Licensing

All OWASP materials are available under an approved FLOSS license. If you opt to become an OWASP member organization, you can also use the commercial license that allows you to use, modify, and distribute all OWASP materials within your organization under a single license.

For more information, please see the OWASP Licenses page.

Participation and Membership

Everyone is welcome to participate in our forums, projects, chapters, and conferences. OWASP is a fantastic place to learn about application security, to network, and even to build your reputation as an expert.

If you find the OWASP materials valuable, please consider supporting our cause by becoming an OWASP member. All monies received by the OWASP Foundation go directly into supporting OWASP projects.

For more information, please see the Membership page.

Projects

OWASP's projects cover many aspects of application security. We build documents, tools, teaching environments, guidelines, checklists, and other materials to help organizations improve their capability to produce secure code.

For details on all the OWASP projects, please see the OWASP Project page.

Privacy Policy

Given OWASP’s mission to help organizations with application security, you have the right to expect protection of any personal information that we might collect about our members.

In general, we do not require authentication or ask visitors to reveal personal information when visiting our website. We collect Internet addresses, not the e-mail addresses, of visitors solely for use in calculating various website statistics.

We may ask for certain personal information, including name and email address from persons downloading OWASP products. This information is not divulged to any third party and is used only for the purposes of:

  • Communicating urgent fixes in the OWASP Materials
  • Seeking advice and feedback about OWASP Materials
  • Inviting participation in OWASP’s consensus process and AppSec conferences

OWASP publishes a list of member organizations and individual members. Listing is purely voluntary and "opt-in." Listed members can request not to be listed at any time.

All information about you or your organization that you send us by fax or mail is physically protected. If you have any questions or concerns about our privacy policy, please contact us at [email protected].