Re: Is there a standard to aspire to?
About the only standard we have for code is the formal proof of security, and that has an extremely narrow scope (the one example that pops to mind, SeL4, has the issue that the formal proof is only valid in the absence of any DMA devices, including video) and is so hard to perform that it's only practical for very small projects (SeL4 is a microkernel, which as said before isn't useful for everyone).