Skip to content

SP 800-218, Secure Software Development Framework (SSDF) Version 1.1: Recommendations for Mitigating the Risk of Software Vulnerabilities

In effectNIST · NIST Special Publication · February 3, 2022

Summary

Sets out the Secure Software Development Framework, a core set of practices software producers follow to reduce vulnerabilities in the software they release; federal supplier attestations were based on it.

Read it on csrc.nist.gov

What FedXchange has recorded

No changes recorded. The watch records a new document and any change in its status.

Issuer
National Institute of Standards and Technology (NIST)
Type
NIST Special Publication
Number
SP 800-218
Issued
February 3, 2022
Status
In effect

Still in force, possibly with amendments.

NIST released a draft Revision 1 (framework version 1.2) for comment on December 17, 2025.

Get new governance by email

A weekly email on Fridays, an alert on the day the watch finds something new, or both. Free.

Send me

We use your address only to send what you choose, and every email has a one-click unsubscribe. Read the privacy notice.