Switching up the roles this time, Naseer Mohammed from Google Cloud hits me with questions about OpenSSF’s Gemara project (the GRC Engineering Model for Automated Risk Assessments).
You can check out the latest from the Gemara project at https://github.com/ossf/gemara