Re: OpenChain Security Assurance Reference Guide - Public Sharing - Feedback Requested

Christopher Wood

Is there some way to incorporate this guide into the basic OpenChain Specification as an added conformance item?

On Nov 2, 2021, at 5:16 PM, Takashi Ninjouji <takashi.ninjouji@...> wrote:

Hello Mark and Shane,

I'm translating §3.4 of the Security Assurance Reference Guide ("this guide") into Japanese, but I need to confirm something:
My understandings are:

This guide focuses on security assurance and can be operated independently of the OpenChain Specification. However, there is no specific way to declare conformance to this guide. And each duration will be managed separately.

In practice, if a program already OpenChain conformant is newly this guide conformant, it may be possible to renew this guide conformant in conjunction with the subsequent OpenChain conformant.

 Are all of the above OK?

Best Regards

On Tue, Oct 26, 2021 at 1:07 PM Shane Coughlan <scoughlan@...> wrote:
As discussed on our global work team calls, the security assurance reference guide has a dedicated page here:

Is the material - particularly that contained in the FAQ - enough to guide understanding and use? Feedback most welcome.



Shane Coughlan
OpenChain General Manager
Book a meeting:

Join to automatically receive all group messages.