This webinar explored the topic of how security can be addressed in the context of open source development and deployment. While critical to the long-term management of open source, it has been a historically under-developed area of resource allocation.
Check Out The Rest Of Our Webinars
This is OpenChain Webinar #28, released on 2021-08-03.

Baker Botts, a leading provider of legal advice with a global presence, is the latest firm to become an official partner of the OpenChain Project, steward of OpenChain ISO 5230 – the International Standard for open source compliance.
“We are excited to announce a partnership with the OpenChain Project, author of the international standard for open source license compliance,” Paul Ragusa, partner in the firm and Chair of the AIPLA Standards and Open Source Committee. “This partnership recognizes the expertise and experience of Baker Botts’ Technology Transactions practice in handling a wide range of issues surrounding open source software. Baker Botts recognizes the vast unmet need for software supply chain management, and has been at the forefront of advising clients on these issues for over a decade. We consider OpenChain a leader in this field, and are excited to strengthen our practice by offering services to help our clients install high-quality open source compliance programs that are OpenChain compliant. We seek to provide all the support needed to show how investing in an open source compliance program can reduce risk and resolve traditional boundaries in software transactions and license enforcement.”
“Law firms are one of the most important parts of the OpenChain Partner ecosystem,” says Shane Coughlan, OpenChain General Manager. “It is both timely and uniquely well-timed to welcome Baker Botts to our community. With a pedigree reaching back to 1840, and a global presence at the forefront of legal developments, the team is excellently positioned to accelerate understanding and adoption of OpenChain ISO 5230 across the supply chain.”
Learn More:
- https://www.bakerbotts.com/news/2021/07/baker-botts-announces-partnership-with-the-openchain-project
About Baker Botts L.L.P.
Baker Botts is an international law firm of approximately 725 lawyers practicing throughout a network of 13 offices around the globe. Based on our experience and knowledge of our clients’ industries, we are recognized as a leading firm in the technology, energy, and life sciences sectors. Since 1840, we have provided creative and effective legal solutions for our clients while demonstrating an unrelenting commitment to excellence. For more information, please visit bakerbotts.com.
About OpenChain
The OpenChain Project maintains the International Standard for open source license compliance. This allows companies of all sizes and in all sectors to adopt the key requirements of a quality open source compliance program. This is an open standard and all parties are welcome to engage with our community, to share their knowledge, and to contribute to the future of our standard.
About The Linux Foundation
The Linux Foundation is the organization of choice for the world’s top developers and companies to build ecosystems that accelerate open technology development and industry adoption. Together with the worldwide open source community, it is solving the hardest technology problems by creating the largest shared technology investment in history. Founded in 2000, The Linux Foundation today provides tools, training and events to scale any open source project, which together deliver an economic impact not achievable by any one company. More information can be found at www.linuxfoundation.org.
The Linux Foundation has registered trademarks and uses trademarks. For a list of trademarks of The Linux Foundation, please see our trademark usage page: https://www.linuxfoundation.org/trademark-usage.
Linux is a registered trademark of Linus Torvalds.
This webinar covered the concept of preparing for adoption of ISO 5230 via readiness assessments. This approach can provide a company with a structured way of allocating resources to improve their open source management.
Check Out The Rest Of Our Webinars
This is OpenChain Webinar #27, released on 2021-07-27.
The OpenChain Mini-Summit discusses all things OpenChain ISO 5230, as well as related projects and activities such as SPDX. You can expect a focus on security, Software Bill of Materials and automation. All welcome.
More details will be provided here shortly.
You can register to attend the event in person via the OSS + ELC 2021 website:
https://events.linuxfoundation.org/open-source-summit-north-america/features/co-located-events/
(This is the recommended way to attend the mini-summit)
You can also attend the event remotely through our Zoom room:
https://zoom.us/j/4377592799
Meeting ID: 437 759 2799
One tap mobile
+13017158592,,4377592799# US (Washington DC)
+13126266799,,4377592799# US (Chicago)
Dial by your location
- +1 301 715 8592 US (Washington DC)
- +1 312 626 6799 US (Chicago)
- +1 346 248 7799 US (Houston)
- +1 646 558 8656 US (New York)
- +1 669 900 6833 US (San Jose)
- +1 253 215 8782 US (Tacoma)
- 877 369 0926 US Toll-free
- 855 880 1246 US Toll-free
- +1 438 809 7799 Canada
- +1 587 328 1099 Canada
- +1 647 374 4685 Canada
- +1 647 558 0588 Canada
- +1 778 907 2071 Canada
- +1 204 272 7920 Canada
- 855 703 8985 Canada Toll-free
Meeting ID: 437 759 2799
Find your local number: https://zoom.us/u/awFnORNiA
Our Guidance Document Is Nearly Ready – Check out our live edit

2021-07-14 – SAN FRANCISCO – Over the past years, Bosch was actively involved in the forming and promoting the new ISO Standard. As an OpenChain conformant enterprise, Bosch rolled out its new corporate open source regulations requiring meeting all ISO5320 conditions concerning open source management processes and policies.
“With OpenChain we have a common framework and a common terminology for Open Source Compliance,” states Hans Malte Kern, Head of the Bosch Center of Competence Open Source. “A wide adaptation by companies across all industries could help to further expand seamless value chains. It is the key building block to establish trust in using Open Source.”
“Bosch is a pivotal company in the automotive sphere due to both its strong product portfolio and its stance as a dedicated, reliable partner,” says Shane Coughlan, OpenChain General Manager. “Their formal adoption of OpenChain ISO 5230 builds on years of productive engagement as a thought-leader in this space. We are delighted to collaborate on the next steps in improving the efficiency and effectiveness of the automotive software supply chain.”
About Bosch
The Bosch Group is a leading global supplier of technology and services. It employs roughly 395,000 associates worldwide (as of December 31, 2020). The company generated sales of 71.5 billion euros in 2020. Its operations are divided into four business sectors: Mobility Solutions, Industrial Technology, Consumer Goods, and Energy and Building Technology. As a leading IoT provider, Bosch offers innovative solutions for smart homes, Industry 4.0, and connected mobility. Bosch is pursuing a vision of mobility that is sustainable, safe, and exciting. It uses its expertise in sensor technology, software, and services, as well as its own IoT cloud, to offer its customers connected, cross-domain solutions from a single source. The Bosch Group’s strategic objective is to facilitate connected living with products and solutions that either contain artificial intelligence (AI) or have been developed or manufactured with its help. Bosch improves quality of life worldwide with products and services that are innovative and spark enthusiasm. In short, Bosch creates technology that is “Invented for life.”
About OpenChain
The OpenChain Project maintains the International Standard for open source license compliance. This allows companies of all sizes and in all sectors to adopt the key requirements of a quality open source compliance program. This is an open standard and all parties are welcome to engage with our community, to share their knowledge, and to contribute to the future of our standard.
About The Linux Foundation
The Linux Foundation is the organization of choice for the world’s top developers and companies to build ecosystems that accelerate open technology development and industry adoption. Together with the worldwide open source community, it is solving the hardest technology problems by creating the largest shared technology investment in history. Founded in 2000, The Linux Foundation today provides tools, training and events to scale any open source project, which together deliver an economic impact not achievable by any one company. More information can be found at www.linuxfoundation.org.
The Linux Foundation has registered trademarks and uses trademarks. For a list of trademarks of The Linux Foundation, please see our trademark usage page: https://www.linuxfoundation.org/trademark-usage.
Linux is a registered trademark of Linus Torvalds.