OSCAL Foundation Pattern Library
OSCAL compliance-package examples and design analyses.
Three areas have separate lifecycles. Patterns provide complete example artifacts, not fragments. Analyses compare OSCAL approaches in separate areas, retained after conclusion to preserve the reasoning. Recommendations record conclusions when an analysis reaches a recommendation.
Analyses are never deleted or rewritten to match later views. A replacement analysis receives a new area; the earlier analysis is marked as superseded to preserve the record.
-
Patterns
Model office examples covering the seven OSCAL models, with the artifacts published as machine-readable files.
-
Analyses
Comparisons of OSCAL approaches, stating evaluation criteria and costs. Analyses remain available after conclusion.
-
Recommendations
Foundation recommendations citing the supporting analyses.

