|
ISO/IEC DIS 18974 - Printable self-certification + One page overview
Dear all There is a printable version of the DIS 18974 self-certification checklist here: https://github.com/OpenChain-Project/Reference-Material/blob/master/Self-Certification/Checklist/DIS-18974/en/
Dear all There is a printable version of the DIS 18974 self-certification checklist here: https://github.com/OpenChain-Project/Reference-Material/blob/master/Self-Certification/Checklist/DIS-18974/en/
|
By
Shane Coughlan
·
|
|
[specification] Interesting new movement to include "security.txt" files in projects
3 messages
Is this JUST for web services? The location section focuses on a fixed URL rather than, say, a location within a source repo. But then, I've barely skimmed the document. From: specification@... <speci
Is this JUST for web services? The location section focuses on a fixed URL rather than, say, a location within a source repo. But then, I've barely skimmed the document. From: specification@... <speci
|
By
Steve Kilbane
·
|
|
Interesting new movement to include "security.txt" files in projects
Jeff flagged this on our monthly call (2023-03-21) https://securitytxt.org/ It is like LICENSE files but for security. What do you think? Have you heard about this? Useful in your workflow?
Jeff flagged this on our monthly call (2023-03-21) https://securitytxt.org/ It is like LICENSE files but for security. What do you think? Have you heard about this? Useful in your workflow?
|
By
Shane Coughlan
·
|
|
Invitation: OpenChain Webinar #50 - An Overview of SPDX 3.0 @ Fri Mar 31, 2023 16:00 - 17:00 (JST) (main@lists.openchainproject.org)
OpenChain Webinar #50 - An Overview of SPDX 3.0 Our 50th webinar will feature Alexios Zavras, Chief Open Source Compliance Officer at Intel Corporation and a long-term friend and collaborator around t
OpenChain Webinar #50 - An Overview of SPDX 3.0 Our 50th webinar will feature Alexios Zavras, Chief Open Source Compliance Officer at Intel Corporation and a long-term friend and collaborator around t
|
By
Shane Coughlan
·
|
|
Outcomes: OpenChain Monthly North America / Asia meeting - 2023-03-21
Our regular monthly meeting continued our work to edit the next generation of our license compliance and security assurance specifications. Our focus this time was on some open issues around the next
Our regular monthly meeting continued our work to edit the next generation of our license compliance and security assurance specifications. Our focus this time was on some open issues around the next
|
By
Shane Coughlan
·
|
|
OpenChain @ OSPO Summit
3 messages
The OpenChain Project is delighted to be part of the OSPO Summit held in Beijing during March 2023. You can check out our speech from the event below. https://www.openchainproject.org/news/2023/03/20/
The OpenChain Project is delighted to be part of the OSPO Summit held in Beijing during March 2023. You can check out our speech from the event below. https://www.openchainproject.org/news/2023/03/20/
|
By
Shane Coughlan
·
|
|
OpenChain Monthly North America / Asia call - editing the specifications - happening in five minutes - 2023-03-21 09:00 CST / 10:00 KST + JST
A reminder that our monthly North America / Asia call is taking place in a five minutes: 2023-03-21 at 09:00 CST / 10:00 KST+JST (01:00 UTC). That will be 18:00 Pacific on the 20th of March for our co
A reminder that our monthly North America / Asia call is taking place in a five minutes: 2023-03-21 at 09:00 CST / 10:00 KST+JST (01:00 UTC). That will be 18:00 Pacific on the 20th of March for our co
|
By
Shane Coughlan
·
|
|
COMING TOMORROW: OpenChain Monthly North America / Asia call - 2023-03-21 09:00 CST / 10:00 KST+JST (01:00 UTC)
Dear All A reminder that our monthly North America / Asia call is taking place tomorrow, 2023-03-21, at 09:00 CST / 10:00 KST+JST (01:00 UTC). That will be 18:00 Pacific on the 20th of March for our c
Dear All A reminder that our monthly North America / Asia call is taking place tomorrow, 2023-03-21, at 09:00 CST / 10:00 KST+JST (01:00 UTC). That will be 18:00 Pacific on the 20th of March for our c
|
By
Shane Coughlan
·
|
|
Introducing DIS 18974, The De Facto International Standard For Open Source Security Assurance
2 messages
The OpenChain Security Assurance Specification 1.1 is now DIS 18974, OpenChain Security Assurance Specification. This de facto industry standard describes the key requirements of a quality open source
The OpenChain Security Assurance Specification 1.1 is now DIS 18974, OpenChain Security Assurance Specification. This de facto industry standard describes the key requirements of a quality open source
|
By
Shane Coughlan
·
|
|
CESI is the Latest OpenChain Partner and Third-Party Certifier
China Electronics Standardization Institute (CESI) is the latest official partner of the OpenChain Project. From today, CESI is offering third-party certification around the standards produced by the
China Electronics Standardization Institute (CESI) is the latest official partner of the OpenChain Project. From today, CESI is offering third-party certification around the standards produced by the
|
By
Shane Coughlan
·
|
|
Looking for articles for IEEE Computer open source column
(Sorry for redundancy through crossposting.) Hello everyone, I'm running out of good articles for IEEE Computer (for the open source expanded column). More information in this old call, now current ag
(Sorry for redundancy through crossposting.) Hello everyone, I'm running out of good articles for IEEE Computer (for the open source expanded column). More information in this old call, now current ag
|
By
Dirk Riehle
·
|
|
OpenChain Newsletter #51
5 messages
Newsletter – Issue 51 – February 2023 The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and securit
Newsletter – Issue 51 – February 2023 The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and securit
|
By
Shane Coughlan
·
|
|
TÜV Nord Taiwan is the latest OpenChain Partner
TÜV Nord Taiwan is the latest official OpenChain Partner. TÜV NORD Taiwan was founded in 1988 and is one of the leading providers of quality, safety, information technology, and renewable energy solut
TÜV Nord Taiwan is the latest official OpenChain Partner. TÜV NORD Taiwan was founded in 1988 and is one of the leading providers of quality, safety, information technology, and renewable energy solut
|
By
Shane Coughlan
·
|
|
OpenChain ISO/IEC Featured In Journal Of Software (软件学报)
OpenChain ISO/IEC 5230:2020 is featured positively in the ‘Survey on Open-source Software Supply Chain Security’ published in the Journal Of Software (软件学报) Volume 33, Issue 3, 2023. This article by J
OpenChain ISO/IEC 5230:2020 is featured positively in the ‘Survey on Open-source Software Supply Chain Security’ published in the Journal Of Software (软件学报) Volume 33, Issue 3, 2023. This article by J
|
By
Shane Coughlan
·
|
|
Updated ISO/IEC 5230 one pager
Dear all There is an updated ISO/IEC 5230 one pager to help people understand value and relevance for their company. Check it out here: https://github.com/OpenChain-Project/Reference-Material/blob/mas
Dear all There is an updated ISO/IEC 5230 one pager to help people understand value and relevance for their company. Check it out here: https://github.com/OpenChain-Project/Reference-Material/blob/mas
|
By
Shane Coughlan
·
|
|
OpenChain Monthly Meeting 2023-03-07 – Recording
Our monthly North America / Europe meeting for March saw continued discussion around the OpenChain Specification Editing Process. Helio and Chris (Co-Chairs of the Specification Work Group) explored t
Our monthly North America / Europe meeting for March saw continued discussion around the OpenChain Specification Editing Process. Helio and Chris (Co-Chairs of the Specification Work Group) explored t
|
By
Shane Coughlan
·
|
|
OpenChain Telco SIG Meetings (Morning and Afternoon) 2023-03-02
Work continues on the Telecommunications Special Interest Group with a focus on building a telco specification related to SBOM. Learn more in the recordings. Morning: https://www.openchainproject.org/
Work continues on the Telecommunications Special Interest Group with a focus on building a telco specification related to SBOM. Learn more in the recordings. Morning: https://www.openchainproject.org/
|
By
Shane Coughlan
·
|
|
OpenChain Monthly Meeting (North America / Europe) in half an hour - 09:00 PST / 17:00 UTC / 18:00 CET
2 messages
Our meeting starts in 30 minutes and will cover a lot of ground. There will be a special focus on editing the licensing and security specifications. This will also be the first meeting where Chris and
Our meeting starts in 30 minutes and will cover a lot of ground. There will be a special focus on editing the licensing and security specifications. This will also be the first meeting where Chris and
|
By
Shane Coughlan
·
|
|
OpenChain Export Control Work Group – Third Meeting – 2023-03-07 - Recording
The OpenChain Export Control Work Group held its third meeting on the 7th of March at 08:00 UTC. The focus was on reviewing the new volunteer project being set up at https://github.com/crypto-law-surv
The OpenChain Export Control Work Group held its third meeting on the 7th of March at 08:00 UTC. The focus was on reviewing the new volunteer project being set up at https://github.com/crypto-law-surv
|
By
Shane Coughlan
·
|
|
OpenChain Webinar #49 – FOSDEM Recap
This OpenChain Webinar featured a FOSDEM recap by Philippe Ombredanne of NexB for everyone who did not attend the event in Belgium at the start of 2023. In 2023 FOSDEM had over 8,000 participants and
This OpenChain Webinar featured a FOSDEM recap by Philippe Ombredanne of NexB for everyone who did not attend the event in Belgium at the start of 2023. In 2023 FOSDEM had over 8,000 participants and
|
By
Shane Coughlan
·
|