Re: OpenChain Bi-Weekly Work Group Meeting Today 2021-08-16 @ 14:00 UTC / 07:00 PST / 15:00 BST / 16:00 CEST / 19:30 IST / 22:00 CST / 23:00 KST / 23:00 JST


Kate Stewart
 

Hi Shane,
    Bit concerned about the slide mentioning the formats (SPDX, SWID, CycloneDX) - it's painting them as basically equivalent.   However when it comes to representing licensing information only SPDX is rich enough to semantically capture this info properly.   We're not highlighting this.  

    Since OpenChain is about licence compliance - not sure that if someone is not using SPDX it should be considered beyond bronze?    Thoughts?

Kate

On Mon, Aug 23, 2021 at 3:47 AM Shane Coughlan <scoughlan@...> wrote:
We will be discussing a very important topic at the OpenChain bi-weekly global work team meeting today (Monday 23rd of August) at 14:00 UTC.

You can dial-in here:
https://zoom.us/j/4377592799

From its launch in October 2016 until today, the OpenChain Project has been based on the concept of continual improvement (or Kaizen). We can now provide a “map” to help guide companies in this process, and to help customer companies judge the sophistication of suppliers who have adopted OpenChain ISO 5230. Here is a slide-deck suggesting how this can be done:
https://1drv.ms/p/s!AsXJVqby5kpnkShuUGG9M2Ki9MEc

Need to confirm your timezone?
2021-08-23 @ 14:00 UTC / 07:00 PST / 15:00 BST / 16:00 CEST / 19:30 IST / 22:00 CST / 23:00 KST / 23:00 JST




Join main@lists.openchainproject.org to automatically receive all group messages.