> For the complete documentation index, see [llms.txt](https://mojaloop.gitbook.io/mojaloop/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://mojaloop.gitbook.io/mojaloop/legacy/quality-security/reference-implementation.md).

# Reference Implementation

> Reference implementations are standard, and guidelines as applied on the Mojaloop standard API. The target audience is architects, DevOps teams, security engineering, QA teams and Developers.

## 1. Architectural Implementations

* 1. [Signature Standard](https://docs.mojaloop.io/mojaloop-specification/documents/Signature.html)
* 1. [Encryption Standard](https://docs.mojaloop.io/mojaloop-specification/documents/Encryption.html)
* 1. [Interledger Cryptographic interlock](https://docs.mojaloop.io/mojaloop-specification/documents/API%20Definition%20v1.0.html#4-interledger-protocol)
* 1. [Secure PISP Account Linking](https://github.com/mojaloop/pisp/tree/master/docs/linking)
* 1. [Certificate Management (MCM)](https://github.com/modusbox/connection-manager-api)

## 2. Code level security measures

* 1. Open Source Vulnerability Management
     * i. [`npm`](https://github.com/modusbox/connection-manager-api) + `npm-audit-resolver`
     * ii. [GitHub/Dependabot](https://github.blog/2020-06-01-keep-all-your-packages-up-to-date-with-dependabot/)
* 1. Open Source License Management - NPM Audit, [license-scanner](https://github.com/mojaloop/license-scanner)
* 1. Static Code Analysis – SonarQube *in progress, details coming soon*
* 1. Container Security
     * i. [Anchore-cli](https://github.com/mojaloop/ci-config#container-scanning)
