|
Request for an interview: expert opinion on the Cyber Resilience Act
2 messages
Dear Mr. Rene-Corail, I hope this email finds you well. My name is Lorenzo Lupoli, and I am a second-year student at LUISS Guido Carli's "Policy and Governance in Europe" master's program. Currently,
Dear Mr. Rene-Corail, I hope this email finds you well. My name is Lorenzo Lupoli, and I am a second-year student at LUISS Guido Carli's "Policy and Governance in Europe" master's program. Currently,
|
By
Lorenzo Lupoli
·
|
|
FYI: Tidelift TACOS framework - machine-readable specification supporting US OMB memo M-22-18 and NIST SSDF
FYI: Tidelift has developed something called the TACOS framework, where TACOS = Trusted Attestation and Compliance for Open Source; you can see more here: https://github.com/tacosframework TACOS defin
FYI: Tidelift has developed something called the TACOS framework, where TACOS = Trusted Attestation and Compliance for Open Source; you can see more here: https://github.com/tacosframework TACOS defin
|
By
David A. Wheeler
·
|
|
Sync call with the Scorecard team
following up on our last WG call (28.3), we have a meeting with the Scorecard team setup for Thursday the 13th at 14:00 ET. The goal is to align on the WG projects and how they fit into Scorecard curr
following up on our last WG call (28.3), we have a meeting with the Scorecard team setup for Thursday the 13th at 14:00 ET. The goal is to align on the WG projects and how they fit into Scorecard curr
|
By
Avishay Balter
·
|
|
[RFA][VOTE][SECOND REQUEST] WG Vote to adopt the Memory Safety SIG
Hello team – this is the second request to gather a quorum of votes to accept or deny the request to adopt the Memory Safety SIG as part of our working group. We’ve had five eligible working group mem
Hello team – this is the second request to gather a quorum of votes to accept or deny the request to adopt the Memory Safety SIG as part of our working group. We’ve had five eligible working group mem
|
By
CRob Robinson (Intel)
·
|
|
[RFC] VOTE - Create new Memory Safety SIG underneath BEST WG - DUE by 28March2023
Team – We have opened an issue(1) for WG members(2) to vote on the potential for our WG to adopt a new SIG aligned with the Mobilization Plan (stream 4) around Memory Safety. Please ask questions, mak
Team – We have opened an issue(1) for WG members(2) to vote on the potential for our WG to adopt a new SIG aligned with the Mobilization Plan (stream 4) around Memory Safety. Please ask questions, mak
|
By
CRob Robinson (Intel)
·
|
|
Memory Safety SIG introduction
2 messages
The team behind the forming Memory Safety SIG would like to present its proposed agenda, get feedback from the community members and to be considered as a SIG under the BEST working group, at the next
The team behind the forming Memory Safety SIG would like to present its proposed agenda, get feedback from the community members and to be considered as a SIG under the BEST working group, at the next
|
By
Avishay Balter
·
|
|
FYI: Endor Labs' "Introducing The Top 10 Open Source Software (OSS) Risks"
All: FYI. Endor Labs released on 2023-03-01 a document titled "The Top 10 Open Source Software (OSS) Risks". Their page says that they "teamed up with over 20 CISOs and CTOs to identify the top 10 sec
All: FYI. Endor Labs released on 2023-03-01 a document titled "The Top 10 Open Source Software (OSS) Risks". Their page says that they "teamed up with over 20 CISOs and CTOs to identify the top 10 sec
|
By
David A. Wheeler
·
|
|
[FYI] Pre-read for 7March TAC Call - BEST WG TAC Report Updates
Hello TAC-friends! On our next call the BEST WG will be reporting out on our current and upcoming activities. To that end, we’re providing our report(1) today as a pre—read for you all. We’re looking
Hello TAC-friends! On our next call the BEST WG will be reporting out on our current and upcoming activities. To that end, we’re providing our report(1) today as a pre—read for you all. We’re looking
|
By
CRob Robinson (Intel)
·
|
|
[FYI] 2023 TAC & SCIR election process
Fam – Below details the steps that will be taken this year to elect the 2023-2024 TAC for the OpenSSF. Anyone interested in participating, details to register to vote, details about the TAC self-nomin
Fam – Below details the steps that will be taken this year to elect the 2023-2024 TAC for the OpenSSF. Anyone interested in participating, details to register to vote, details about the TAC self-nomin
|
By
CRob Robinson (Intel)
·
|
|
Proposed modification to concise guide for evaluating OSS
I have a proposed modification to the "Concise Guide to Evaluating OSS". The primary change I propose is that *you* don't have to evaluate code, you could hire someone else, read reviews by others, et
I have a proposed modification to the "Concise Guide to Evaluating OSS". The primary change I propose is that *you* don't have to evaluate code, you could hire someone else, read reviews by others, et
|
By
David A. Wheeler
·
|
|
[FYI] C/C++ Compiler Best Practices Guide Meeting time
All – to anyone interested, we are assembling a focused group to collaborate on the C/C++ Compiler BP Guide! We will be meeting Wednesdays from 9am EST / 1400 UTC starting on 15Feb and meeting every o
All – to anyone interested, we are assembling a focused group to collaborate on the C/C++ Compiler BP Guide! We will be meeting Wednesdays from 9am EST / 1400 UTC starting on 15Feb and meeting every o
|
By
CRob Robinson (Intel)
·
|
|
[FYI] = C/C++ Compiler Flags Guide Meeting time poll
Team – I’ve created a doodle poll to try and find a common time to assemble and collaborate on our C/C++ Compiler Flag guide(2). Please share this with anyone you feel would add value to our group and
Team – I’ve created a doodle poll to try and find a common time to assemble and collaborate on our C/C++ Compiler Flag guide(2). Please share this with anyone you feel would add value to our group and
|
By
CRob Robinson (Intel)
·
|
|
[FYI] SCM BP Guide working sessions
Anyone interested in working on a source code management best practices guide is welcome to join us every other Wednesday from 10-11am EST starting this week. We’ll spend some time organizing ourselve
Anyone interested in working on a source code management best practices guide is welcome to join us every other Wednesday from 10-11am EST starting this week. We’ll spend some time organizing ourselve
|
By
CRob Robinson (Intel)
·
|
|
[RFC] EDU.SIG Mobilization Plan Proposal ready for review
TAC – The OSSF’s EDU.SIG team has finished our “final” draft of our revisions to the Mobilization Plan Stream 1. The relevant links and details about the plan can be found in TAC Issue #134 (1). We’d
TAC – The OSSF’s EDU.SIG team has finished our “final” draft of our revisions to the Mobilization Plan Stream 1. The relevant links and details about the plan can be found in TAC Issue #134 (1). We’d
|
By
CRob Robinson (Intel)
·
|
|
[RFC] Setup APAC TZ-friendly monthly call?
Team – With one of my other working groups, we’ve had a request to set up calls that allow folks from APAC to participate. Would this group be interested and open to participating in such an endeavor
Team – With one of my other working groups, we’ve had a request to set up calls that allow folks from APAC to participate. Would this group be interested and open to participating in such an endeavor
|
By
CRob Robinson (Intel)
·
|
|
[RFI] Meeting time for SCM Guide poll
BEST Working Group – We’ve set up a poll to find a time to collaborate on our next project, a Source Code Management Best Practices guide. Please vote(1) for times you are available if you desire to h
BEST Working Group – We’ve set up a poll to find a time to collaborate on our next project, a Source Code Management Best Practices guide. Please vote(1) for times you are available if you desire to h
|
By
CRob Robinson (Intel)
·
|
|
[FYI] EDU.SIG Section 1 Meeting Canceled for Thursday 01-05
FYI, We will not be having the scheduled Collect & Curate Content EDU.SIG meeting this Thursday. Thanks! Dave -- Dave Russo Senior Principal Program Manager, Secure Development Red Hat Product Securit
FYI, We will not be having the scheduled Collect & Curate Content EDU.SIG meeting this Thursday. Thanks! Dave -- Dave Russo Senior Principal Program Manager, Secure Development Red Hat Product Securit
|
By
Dave Russo
·
|
|
[FYI] Vote for Time to hold DEI Subcommittee Meetings by EoD Friday 1/6
Hello all – The DEI subcommittee would LOVE your opinion on a bi-weekly meeting time that works out for the majority of folks who would like to join us in our focused efforts to move forward to addres
Hello all – The DEI subcommittee would LOVE your opinion on a bi-weekly meeting time that works out for the majority of folks who would like to join us in our focused efforts to move forward to addres
|
By
CRob Robinson (Intel)
·
|
|
[FYI] New EDU.SIG DEI Subcommittee
5 messages
Team – we’ve had numerous members express interest in devoting time to collaborating specifically on our Diversity, Equity, and Inclusion goals for the SIG. If you wish to join in the conversation and
Team – we’ve had numerous members express interest in devoting time to collaborating specifically on our Diversity, Equity, and Inclusion goals for the SIG. If you wish to join in the conversation and
|
By
CRob Robinson (Intel)
·
|
|
[RFC] EDU.SIG Plan ready for review & comment - DUE 23Dec2022
EDU.SIG & BEST WG members – the EDU.SIG has completed our work on the next draft of the Education plan that we desire to share with the TAC in early 2023. Please take some time and read through the pl
EDU.SIG & BEST WG members – the EDU.SIG has completed our work on the next draft of the Education plan that we desire to share with the TAC in early 2023. Please take some time and read through the pl
|
By
CRob Robinson (Intel)
·
|