Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
47 commits
Select commit Hold shift + click to select a range
3055e47
New translations model.md (French)
23bartman Oct 4, 2023
577db20
New translations model.md (Spanish)
23bartman Oct 4, 2023
a70119b
New translations model.md (German)
23bartman Oct 4, 2023
12885f6
New translations model.md (Dutch)
23bartman Oct 4, 2023
5cae5a9
New translations model.md (Chinese Traditional)
23bartman Oct 4, 2023
9e5378d
New translations model.md (Portuguese, Brazilian)
23bartman Oct 4, 2023
b35c4d5
New translations model.md (Test)
23bartman Oct 4, 2023
effa72c
New translations model.md (French)
23bartman Oct 5, 2023
b83be3d
New translations model.md (French)
23bartman Oct 5, 2023
71b020a
New translations model.md (French)
23bartman Oct 6, 2023
3fd2813
New translations model.md (French)
23bartman Oct 6, 2023
f6cd352
New translations model.md (Spanish)
23bartman Mar 14, 2024
e69ea96
New translations model.md (Spanish)
23bartman Jul 24, 2024
61b65c5
New translations model.md (Czech)
23bartman Aug 25, 2024
99c20c3
New translations model.md (French)
23bartman Sep 9, 2024
fc29bdf
New translations model.md (Spanish)
23bartman Sep 9, 2024
f9e6d0f
New translations model.md (Czech)
23bartman Sep 9, 2024
54ae3d9
New translations model.md (German)
23bartman Sep 9, 2024
233d712
New translations model.md (Dutch)
23bartman Sep 9, 2024
0828efb
New translations model.md (Chinese Traditional)
23bartman Sep 9, 2024
e14edbe
New translations model.md (Portuguese, Brazilian)
23bartman Sep 9, 2024
afee993
New translations model.md (Test)
23bartman Sep 9, 2024
047000e
New translations model.md (Spanish)
23bartman Oct 11, 2024
bf7baab
New translations model.md (Italian)
23bartman Oct 16, 2024
578df57
New translations model.md (Russian)
23bartman Oct 16, 2024
b006d27
New translations model.md (Italian)
23bartman Nov 16, 2024
f7e1c67
New translations model.md (German)
23bartman Mar 10, 2025
e26f63d
New translations model.md (French)
23bartman Mar 7, 2026
2ca9518
New translations model.md (Spanish)
23bartman Mar 7, 2026
0a23197
New translations model.md (Czech)
23bartman Mar 7, 2026
d4f64f2
New translations model.md (German)
23bartman Mar 7, 2026
2783ce3
New translations model.md (Italian)
23bartman Mar 7, 2026
a36d19f
New translations model.md (Dutch)
23bartman Mar 7, 2026
eac5de4
New translations model.md (Russian)
23bartman Mar 7, 2026
378ef7b
New translations model.md (Chinese Traditional)
23bartman Mar 7, 2026
0849f25
New translations model.md (Portuguese, Brazilian)
23bartman Mar 7, 2026
d5cd5de
New translations model.md (Test)
23bartman Mar 7, 2026
142d9ee
New translations model.md (French)
23bartman Apr 15, 2026
f1c6af6
New translations model.md (Spanish)
23bartman Apr 15, 2026
c1b0138
New translations model.md (Czech)
23bartman Apr 15, 2026
6f2e1cd
New translations model.md (German)
23bartman Apr 15, 2026
01c4802
New translations model.md (Italian)
23bartman Apr 15, 2026
3088d80
New translations model.md (Dutch)
23bartman Apr 15, 2026
bb1f253
New translations model.md (Russian)
23bartman Apr 15, 2026
3b4e357
New translations model.md (Chinese Traditional)
23bartman Apr 15, 2026
b3e3b91
New translations model.md (Portuguese, Brazilian)
23bartman Apr 15, 2026
52578f7
New translations model.md (Test)
23bartman Apr 15, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
28 changes: 28 additions & 0 deletions content/cs/model.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
---
title: The Model
type: page
description: The model
keywords:
- "model"
- "How do I"
- "questions"
- "what if"
---

## SAMM model overview

{{< model-table >}}

## Introduction

The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />
28 changes: 28 additions & 0 deletions content/de/model.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
---
title: Das Modell
type: page
description: Das Modell
keywords:
- "modell"
- "Wie kann ich"
- "fragen"
- "was ist, wenn"
---

## SAMM Modellübersicht

{{< model-table >}}

## Einführung

The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />
21 changes: 13 additions & 8 deletions content/es/model.md
Original file line number Diff line number Diff line change
@@ -1,23 +1,28 @@
---
title: El Modelo
type: page
description: El modelo
keywords: ["model","How do I","questions","what if"]
keywords:
- "maqueta"
- "¿Cómo?"
- "preguntas"
- "¿Qué pasaría si?"
---

{{< language-dropdown >}}

## Visión general del modelo SAMM

{{< model-table >}}

## Introducción

La misión del Modelo de madurez de aseguramiento de software de OWASP (SAMM) es ser el modelo de madurez principal para el aseguramiento de software que proporciona una forma efectiva y medible para que todo tipo de organizaciones analicen y mejoren su postura de seguridad de software. OWASP SAMM admite el ciclo de vida completo del software, incluido el desarrollo y la adquisición, y es independiente de la tecnología y los procesos. Está construido intencionalmente para ser evolutivo y estar impulsado por el riesgo por naturaleza.
The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

El modelo original (v1.0) fue escrito por Pravir Chandra y se remonta a 2009. Durante los últimos 10 años, ha demostrado ser un modelo eficaz y ampliamente distribuido para mejorar las prácticas de software seguro en diferentes tipos de organizaciones en todo el mundo. La comunidad ha aportado traducciones y herramientas de apoyo para facilitar la adopción y la alineación. Con la versión 2.0, mejoramos aún más el modelo para hacer frente a algunas de sus limitaciones actuales.
After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

Después de un período de intensas discusiones y con aportes de los profesionales y la comunidad de OWASP durante las cumbres en Europa y los EE. UU. Sobre la mejor manera de avanzar, adoptamos un nuevo enfoque para la versión 2.0 basado en los aportes que reunimos.
For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

Para obtener una descripción general de los cambios de la versión 2, lea nuestras [notas de la versión 2 de SAMM](/release-notes-v2).
We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

Generamos una {{< external-link "https://drive.google.com/file/d/1ZWMk4dpS3zpXjE28wi4cf5Lq6TUjeA5x/view?usp=sharing" "versión PDF">}} básica del modelo. Seguiremos trabajando en él para tener una versión final lo antes posible.
<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />
28 changes: 28 additions & 0 deletions content/fr/model.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
---
title: Le modèle
type: page
description: Le modèle
keywords:
- "modèle"
- "Comment faire"
- "questions"
- "Et si"
---

## Aperçu du modèle SAMM

{{< model-table >}}

## Introduction

The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />
28 changes: 28 additions & 0 deletions content/it/model.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
---
title: The Model
type: page
description: The model
keywords:
- "model"
- "How do I"
- "questions"
- "what if"
---

## Panoramica del modello SAMM

{{< model-table >}}

## Introduzione

The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />
28 changes: 28 additions & 0 deletions content/nl/model.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
---
title: The Model
type: page
description: The model
keywords:
- "model"
- "How do I"
- "questions"
- "what if"
---

## SAMM model overview

{{< model-table >}}

## Introduction

The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />
28 changes: 28 additions & 0 deletions content/pt/model.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
---
title: The Model
type: page
description: The model
keywords:
- "model"
- "How do I"
- "questions"
- "what if"
---

## SAMM model overview

{{< model-table >}}

## Introduction

The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />
28 changes: 28 additions & 0 deletions content/ru/model.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
---
title: The Model
type: page
description: The model
keywords:
- "model"
- "How do I"
- "questions"
- "what if"
---

## SAMM model overview

{{< model-table >}}

## Introduction

The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />
28 changes: 28 additions & 0 deletions content/ts/model.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
---
title: The Model
type: page
description: The model
keywords:
- "model"
- "How do I"
- "questions"
- "what if"
---

## SAMM model overview

{{< model-table >}}

## Introduction

The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />
28 changes: 28 additions & 0 deletions content/zh/model.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
---
title: The Model
type: page
description: The model
keywords:
- "model"
- "How do I"
- "questions"
- "what if"
---

## SAMM model overview

{{< model-table >}}

## Introduction

The mission of OWASP Software Assurance Maturity Model (SAMM) is to be the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. OWASP SAMM supports the complete software lifecycle, including development and acquisition, and is technology and process agnostic. It is intentionally built to be evolutive and risk-driven in nature.

The original model (v1.0) was written by Pravir Chandra and dates back from 2009. Over the last 10 years, it has proven a widely distributed and effective model for improving secure software practices in different types of organizations throughout the world. Translations and supporting tools have been contributed by the community to facilitate adoption and alignment. With version 2.0, we further improve the model to deal with some of its current limitations.

After a period of intensive discussions and with input from practitioners and the OWASP community during summits in Europe and the US on the best way forward, we take a new approach for version 2.0 based on the input we gathered.

For an overview of the version 2 changes, read our [SAMM version 2 release notes](/release-notes-v2).

We've also created a {{< external-link "https://drive.google.com/file/d/1cI3Qzfrly_X89z7StLWI5p_Jfqs0-OZv/view?usp=sharing" "PDF version">}} of the model.

<img referrerpolicy="no-referrer-when-downgrade" src="https://static.scarf.sh/a.png?x-pxid=6e76dfd3-e2e4-4864-a63b-0b361639db63" />