|
[RFA][VOTE][SECOND REQUEST] WG Vote to adopt the Memory Safety SIG
Hello team – this is the second request to gather a quorum of votes to accept or deny the request to adopt the Memory Safety SIG as part of our working group. We’ve had five eligible working group mem
Hello team – this is the second request to gather a quorum of votes to accept or deny the request to adopt the Memory Safety SIG as part of our working group. We’ve had five eligible working group mem
|
By
CRob Robinson (Intel)
·
|
|
[RFC] VOTE - Create new Memory Safety SIG underneath BEST WG - DUE by 28March2023
Team – We have opened an issue(1) for WG members(2) to vote on the potential for our WG to adopt a new SIG aligned with the Mobilization Plan (stream 4) around Memory Safety. Please ask questions, mak
Team – We have opened an issue(1) for WG members(2) to vote on the potential for our WG to adopt a new SIG aligned with the Mobilization Plan (stream 4) around Memory Safety. Please ask questions, mak
|
By
CRob Robinson (Intel)
·
|
|
Memory Safety SIG introduction
2 messages
The team behind the forming Memory Safety SIG would like to present its proposed agenda, get feedback from the community members and to be considered as a SIG under the BEST working group, at the next
The team behind the forming Memory Safety SIG would like to present its proposed agenda, get feedback from the community members and to be considered as a SIG under the BEST working group, at the next
|
By
Avishay Balter
·
|
|
FYI: Endor Labs' "Introducing The Top 10 Open Source Software (OSS) Risks"
All: FYI. Endor Labs released on 2023-03-01 a document titled "The Top 10 Open Source Software (OSS) Risks". Their page says that they "teamed up with over 20 CISOs and CTOs to identify the top 10 sec
All: FYI. Endor Labs released on 2023-03-01 a document titled "The Top 10 Open Source Software (OSS) Risks". Their page says that they "teamed up with over 20 CISOs and CTOs to identify the top 10 sec
|
By
David A. Wheeler
·
|
|
[FYI] Pre-read for 7March TAC Call - BEST WG TAC Report Updates
Hello TAC-friends! On our next call the BEST WG will be reporting out on our current and upcoming activities. To that end, we’re providing our report(1) today as a pre—read for you all. We’re looking
Hello TAC-friends! On our next call the BEST WG will be reporting out on our current and upcoming activities. To that end, we’re providing our report(1) today as a pre—read for you all. We’re looking
|
By
CRob Robinson (Intel)
·
|
|
[FYI] 2023 TAC & SCIR election process
Fam – Below details the steps that will be taken this year to elect the 2023-2024 TAC for the OpenSSF. Anyone interested in participating, details to register to vote, details about the TAC self-nomin
Fam – Below details the steps that will be taken this year to elect the 2023-2024 TAC for the OpenSSF. Anyone interested in participating, details to register to vote, details about the TAC self-nomin
|
By
CRob Robinson (Intel)
·
|
|
Proposed modification to concise guide for evaluating OSS
I have a proposed modification to the "Concise Guide to Evaluating OSS". The primary change I propose is that *you* don't have to evaluate code, you could hire someone else, read reviews by others, et
I have a proposed modification to the "Concise Guide to Evaluating OSS". The primary change I propose is that *you* don't have to evaluate code, you could hire someone else, read reviews by others, et
|
By
David A. Wheeler
·
|
|
[FYI] C/C++ Compiler Best Practices Guide Meeting time
All – to anyone interested, we are assembling a focused group to collaborate on the C/C++ Compiler BP Guide! We will be meeting Wednesdays from 9am EST / 1400 UTC starting on 15Feb and meeting every o
All – to anyone interested, we are assembling a focused group to collaborate on the C/C++ Compiler BP Guide! We will be meeting Wednesdays from 9am EST / 1400 UTC starting on 15Feb and meeting every o
|
By
CRob Robinson (Intel)
·
|
|
[FYI] = C/C++ Compiler Flags Guide Meeting time poll
Team – I’ve created a doodle poll to try and find a common time to assemble and collaborate on our C/C++ Compiler Flag guide(2). Please share this with anyone you feel would add value to our group and
Team – I’ve created a doodle poll to try and find a common time to assemble and collaborate on our C/C++ Compiler Flag guide(2). Please share this with anyone you feel would add value to our group and
|
By
CRob Robinson (Intel)
·
|
|
[FYI] SCM BP Guide working sessions
Anyone interested in working on a source code management best practices guide is welcome to join us every other Wednesday from 10-11am EST starting this week. We’ll spend some time organizing ourselve
Anyone interested in working on a source code management best practices guide is welcome to join us every other Wednesday from 10-11am EST starting this week. We’ll spend some time organizing ourselve
|
By
CRob Robinson (Intel)
·
|
|
[RFC] EDU.SIG Mobilization Plan Proposal ready for review
TAC – The OSSF’s EDU.SIG team has finished our “final” draft of our revisions to the Mobilization Plan Stream 1. The relevant links and details about the plan can be found in TAC Issue #134 (1). We’d
TAC – The OSSF’s EDU.SIG team has finished our “final” draft of our revisions to the Mobilization Plan Stream 1. The relevant links and details about the plan can be found in TAC Issue #134 (1). We’d
|
By
CRob Robinson (Intel)
·
|
|
[RFC] Setup APAC TZ-friendly monthly call?
Team – With one of my other working groups, we’ve had a request to set up calls that allow folks from APAC to participate. Would this group be interested and open to participating in such an endeavor
Team – With one of my other working groups, we’ve had a request to set up calls that allow folks from APAC to participate. Would this group be interested and open to participating in such an endeavor
|
By
CRob Robinson (Intel)
·
|
|
[RFI] Meeting time for SCM Guide poll
BEST Working Group – We’ve set up a poll to find a time to collaborate on our next project, a Source Code Management Best Practices guide. Please vote(1) for times you are available if you desire to h
BEST Working Group – We’ve set up a poll to find a time to collaborate on our next project, a Source Code Management Best Practices guide. Please vote(1) for times you are available if you desire to h
|
By
CRob Robinson (Intel)
·
|
|
[FYI] EDU.SIG Section 1 Meeting Canceled for Thursday 01-05
FYI, We will not be having the scheduled Collect & Curate Content EDU.SIG meeting this Thursday. Thanks! Dave -- Dave Russo Senior Principal Program Manager, Secure Development Red Hat Product Securit
FYI, We will not be having the scheduled Collect & Curate Content EDU.SIG meeting this Thursday. Thanks! Dave -- Dave Russo Senior Principal Program Manager, Secure Development Red Hat Product Securit
|
By
Dave Russo
·
|
|
[FYI] Vote for Time to hold DEI Subcommittee Meetings by EoD Friday 1/6
Hello all – The DEI subcommittee would LOVE your opinion on a bi-weekly meeting time that works out for the majority of folks who would like to join us in our focused efforts to move forward to addres
Hello all – The DEI subcommittee would LOVE your opinion on a bi-weekly meeting time that works out for the majority of folks who would like to join us in our focused efforts to move forward to addres
|
By
CRob Robinson (Intel)
·
|
|
[FYI] New EDU.SIG DEI Subcommittee
5 messages
Team – we’ve had numerous members express interest in devoting time to collaborating specifically on our Diversity, Equity, and Inclusion goals for the SIG. If you wish to join in the conversation and
Team – we’ve had numerous members express interest in devoting time to collaborating specifically on our Diversity, Equity, and Inclusion goals for the SIG. If you wish to join in the conversation and
|
By
CRob Robinson (Intel)
·
|
|
[RFC] EDU.SIG Plan ready for review & comment - DUE 23Dec2022
EDU.SIG & BEST WG members – the EDU.SIG has completed our work on the next draft of the Education plan that we desire to share with the TAC in early 2023. Please take some time and read through the pl
EDU.SIG & BEST WG members – the EDU.SIG has completed our work on the next draft of the Education plan that we desire to share with the TAC in early 2023. Please take some time and read through the pl
|
By
CRob Robinson (Intel)
·
|
|
[AR] Please review WG Charter and vote on Issue 103 to adopt or not
Team – please review Issue 103(1) and review our WG Charter and express your vote so we can close this matter. Thanks all! - https://github.com/ossf/wg-best-practices-os-developers/issues/103 Cheers,
Team – please review Issue 103(1) and review our WG Charter and express your vote so we can close this matter. Thanks all! - https://github.com/ossf/wg-best-practices-os-developers/issues/103 Cheers,
|
By
CRob Robinson (Intel)
·
|
|
FYI: GitHub now supports private vulnerability reporting!!!
All, FYI: GitHub now supports private reporting of security vulnerabilities to projects! This is a big deal. Details here: https://docs.github.com/en/code-security/security-advisories/guidance-on-repo
All, FYI: GitHub now supports private reporting of security vulnerabilities to projects! This is a big deal. Details here: https://docs.github.com/en/code-security/security-advisories/guidance-on-repo
|
By
David A. Wheeler
·
|
|
[OpenSSF] The US Securing Open Source Software Act of 2022 is a step in the right direction
Subject: [OpenSSF] The US Securing Open Source Software Act of 2022 is a step in the right direction Good day from Singapore, I have just come across this article. Sharing it for more awareness. Artic
Subject: [OpenSSF] The US Securing Open Source Software Act of 2022 is a step in the right direction Good day from Singapore, I have just come across this article. Sharing it for more awareness. Artic
|
By
Turritopsis Dohrnii Teo En Ming
·
|