<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Theresa Mammarella on foojay.io - Friends of OpenJDK</title><link>https://foojayio.github.io/website/today/author/theresa-mammarella/</link><description>Articles written by Theresa Mammarella on foojay.io - Friends of OpenJDK</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Thu, 23 Mar 2023 14:10:02 +0000</lastBuildDate><atom:link href="https://foojayio.github.io/website/today/author/theresa-mammarella/index.xml" rel="self" type="application/rss+xml"/><item><title>Predicting Secure Java Projects on Maven Central</title><link>https://foojayio.github.io/website/today/predicting-secure-java-projects-on-maven-central/</link><pubDate>Thu, 23 Mar 2023 14:10:02 +0000</pubDate><guid>https://foojayio.github.io/website/today/predicting-secure-java-projects-on-maven-central/</guid><description>&lt;p&gt;If you&amp;rsquo;ve searched for &lt;a href="http://central.sonatype.com" title="Maven Central components" target="_blank" rel="noopener noreferrer"&gt;Maven Central components&lt;/a&gt;
 in the last six months, you may have noticed some pretty big changes to the website, including a UI facelift and some new component analysis tools like &lt;a href="https://bomdoctor.sonatype.com/#/home" title="BOM Doctor" target="_blank" rel="noopener noreferrer"&gt;BOM Doctor&lt;/a&gt;
 and the Sonatype Safety Rating.&lt;/p&gt;
&lt;p&gt;It&amp;rsquo;s no coincidence that many of these changes are security related. Maven Central, along with public code repositories, are the first line of defense when it comes to supply chain security.&lt;/p&gt;</description></item></channel></rss>