The Linux Foundation Projects
Skip to main content
All Posts By

Shane Coughlan

Shane Coughlan is an expert in communication, security and business development. His professional accomplishments include spearheading the licensing team that elevated Open Invention Network into the largest patent non-aggression community in history, establishing the leading professional network of Open Source legal experts and aligning stakeholders to launch both the first law journal and the first law book dedicated to Open Source. Shane has extensive knowledge of Open Source governance, internal process development, supply chain management and community building. His experience includes engagement with the enterprise, embedded, mobile and automotive industries.

OpenChain Q1 Survey – Results and Notes

By Featured

It is time to explore the results of our Q1 survey! At the bottom of this post you can download the full document. Let’s check out the highlights:

  1. Engagement and satisfaction is rated as very good or (more frequently) excellent across the board. The vast majority of respondents believe that we are “Very Good” or “Excellent” in putting forward what we are doing and sharing our information – either the business value, conformance, reference materials, and our website. Most importantly, people see us as a community that is easy to engage with and easy to get help from.
  2. Our conformance response revealed something interesting. About half of our respondents are primarily interested in something other than a private health of their compliance program or being listed publicly as having an OpenChain conformant program.This is worth digging into more (and we will), but some preliminary notes are:
    1. Feedback indicates that a relatively small percentage are seeking public announcements regarding conformance at this juncture, regardless of internal compliance activities. Their focus is instead on internal (or inter-supply chain) improvements and conformance. 
    2. We additionally have a number of companies engaging with OpenChain ISO 5230 with applications outside of our core scope of conformance for the purpose of license compliance. These include entities engaging for activities related to security, mergers and acquisitions, and other business processes. We knew this from participants on our calls and so on, but it’s interesting how many of our community participants appear to fit into this demographic.
  3. About a third of respondents have used our online conformance web app, and those that have found it excellent in its ease of use, while about a third of respondents are not interested in getting more help conforming with OpenChain ISO 5230:2020 in the future. From other sources we have indications that this is due to two factors:
    1. People are using the specification directly for conformance or using our downloadable questionnaire.
    2. People are getting assistance from third parties such as participants in our partner program.
  4. We asked broader questions in the survey than those related only to OpenChain. For example, we asked about tooling, software bill of materials and interoperability. The interoperability questions were framed around determining what is important to the community in the context of open source license compliance and interoperability around Software Bill of Materials and/or automation.  Respondents overwhelmingly expressed interest in greater interoperability for all tools and automation. This means supporting ingest and export of SPDX. It means greater interoperability between open source tooling as well as between open source and proprietary tooling.

Now we know what people want, it is time to make it happen.

You can expect the project as a whole to lean into supporting to diverse use-cases for OpenChain ISO 5230. You can expect the tooling group to lean into the interoperability question.

And…you are the community. Let’s get started!

Want To Check Out The Full Survey Results?

OpenChain ISO 5260 and SPDX explicitly enter the Scania supply chain via Scania Corporate Standard 4589 (STD 4589)

By Featured

As recently noted by Jonas Oberg, Open Source Officer at Scania, OpenChain ISO 5230 and SPDX have been explicitly included in Scania Corporate Standard 4589 (STD 4589). This defines the expectations Scania has towards suppliers when they deliver a solution containing open source software.

Scania has three key considerations defined in STD 4589:

  1. Suppliers should conform to OpenChain ISO 5230.
  2. Suppliers should ideally contribute modifications to open source components to the originating open source project.
  3. Suppliers should provide a software bill of materials in SPDX format and any applicable source code when the software license requires it.

OpenChain Newsletter #48

By Monthly Newsletter, News

Newsletter – Issue 48 – April 2021

Our newsletter contains some of the highlights from the last month of activity in the project. Plenty more happened. Check out the full stream here:
https://www.openchainproject.org/news

OpenChain @ The Japanese Ministry of Trade (METI) on Open Source 

The Japanese Ministry of Trade (METI) has released a series of case studies on open source, feating OpenChain prominently:
https://www.openchainproject.org/news/2021/04/21/the-japanese-ministry-of-trade-meti-on-open-source-openchain-features-prominently/embed#?secret=Dik5X4pCK0

OpenChain @ Conformance

OpenChain @ Slack

OpenChain is on Slack:
https://www.openchainproject.org/featured/2021/04/06/openchain-is-on-slack/embed#?secret=LkSo1RDlEa

OpenChain @ Webinars #21 & 22

You can watch OpenChain Webinars #21 & 22 on OpenChain as an Inclusive Community & Linux License Clean-Up Disorder Dispelled + ISO 5230 in the Context of Security:

Check Out All Our Previous Newsletters

First Public Meeting: OpenChain Telco Work Group Meeting – 2021-05-06

By News

We will host the first public meeting of the OpenChain Telco Work Group on the 6th of May at 07:00 Pacific / 14:00 UTC / 22:00 CST. All interested parties from telecommunications and related fields are invited to attend. We will be discussing how ISO 5230 fits into this sphere, how it interrelated with other standards, and what information or specific support is necessary for the Telco sector. The meeting will be chaired by Jimmy Ahlberg from Ericsson. 

= Dial in Details – Also in our Global Calendar =

https://us02web.zoom.us/j/9990120120?pwd=NzVCaFE2L1RRRFZaSkk0dm8xdlplUT09

Meeting ID: 999 012 0120
Passcode: 123456

One tap mobile

  • +16699006833,,9990120120#,,,,*123456# US (San Jose)
  • +12532158782,,9990120120#,,,,*123456# US (Tacoma)

Dial by your location

OpenChain China + OpenAtom Event – 2021-04-23

By News

The OpenChain China Work Group will host an event in collaboration with OpenAtom on the 23rd of April. We will have one case study from Taiwan and one case study from Japan, as well as local market discussion. Everyone is welcome to join. Details are below.

会议时间:2021/04/23 10:00-18:00 (GMT+08:00) 中国标准时间 – 北京
点击链接入会,或添加至会议列表:
https://meeting.tencent.com/s/733MLd6DfqjF
会议 ID:890 179 092
会议密码:123456
手机一键拨号入会
+8675536550000,,890179092#
(中国大陆)
+85230018898,,,2,890179092#
(中国香港)
根据您的位置拨号
+8675536550000
(中国大陆)
+85230018898
(中国香港)