This repository is provided by the OSCAL Foundation in support of OSCAL-based FedRAMP artifacts.
It provides the following:
- FedRAMP Rev 5 Baselines
- Example OSCAL System Security Plan (SSP)
- Example Plan of Action and Milestones (POA&M) [pending]
- Example Security Assessment Plan (SAP) [pending]
- Example Security Assessment Report (SAR) [pending]
Additional resources will be added as they become available. Examples are 100% OSCAL valid, and maximize use of core OSCAL to the greatest degree practical while fully aliging with FedRAMP documentation requirements.
Please create an issue to document any errors, concerns or requests. All FedRAMP OSCAL community members are welcome to provide sample OSCAL content for their specific FedRAMP use cases and contribute content that addresses issues.