The Linux Foundation Projects
Skip to main content
Category

Monthly Newsletter

OpenChain Newsletter #60

By Monthly Newsletter, News
logo

​ Newsletter – Issue 60 – November 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. We accept suggestions and ideas. Feel free to mail us at any time.

Headline News

Outreach

Webinars

  • No recording released this month.

Meetings

Our community held the following meetings:

Check Out All Our Previous Newsletters:

OpenChain Newsletter #59

By Monthly Newsletter, News
logo

​ Newsletter – Issue 59 – October 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. We accept suggestions and ideas. Feel free to mail us at any time.

Headline News

Outreach

Webinars

  • None this month.

Meetings

Our community held the following meetings:

Check Out All Our Previous Newsletters:

OpenChain Newsletter #58

By Monthly Newsletter, News
logo

​ Newsletter – Issue 58 – September 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. We accept suggestions and ideas. Feel free to mail us at any time.

Headline News

Outreach

Webinars

Meetings

Our community held the following meetings:

Check Out All Our Previous Newsletters:

OpenChain Newsletter #57

By Monthly Newsletter, News
logo

​ Newsletter – Issue 57 – August 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. We accept suggestions and ideas. Feel free to mail us at any time.

Headline News

In Memory Of Ueda San

Outreach

Webinars

  • None this month! Vacation time.

Meetings

Our community held the following meetings:

Check Out All Our Previous Newsletters:

OpenChain Newsletter #56

By Monthly Newsletter, News
logo

​ Newsletter – Issue 56 – July 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. We accept suggestions and ideas. Feel free to mail us at any time.

Headline News

Outreach

Shane Coughlan, OpenChain General Manager, was the guest presenter on a webinar for InnerSource Commons:

Webinars

The OpenChain webinar series continued with presentations about open source in automotive and on InnerSource:

Meetings

Our multiple work groups had regular meetings:

Check Out All Our Previous Newsletters:

OpenChain Newsletter #55

By Monthly Newsletter, News
logo

​ Newsletter – Issue 55 – June 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. We accept suggestions and ideas. Feel free to mail us at any time.

This edition of the newsletter was created and shared by Qiuyue Qi of OpenSCA, and we provide our thanks for the contribution!

Main News

Deloitte joined the OpenChain Project as an official partner.

xFusion has announced conformance with ISO/IEC 5230.

Activities

The OpenChain Project has joined an O-RAN next Generation Research Group meeting:

Find the recordings of our mini-summit at the Linux Foundation Open Source Summit North America here:

Materials

Check infos about OpenChain Conformance Badge and the new Online Conformance Checklists for All OpenChain Standards.

Webinars

There are three webinars this month: two regular ones talked respectively about trusted network initiative (#52) and OpenSCA (#53), and a special one focused on automotive.

Routine

Our multiple work groups had regular meetings:

Check our monthly meeting below:

Check Out All Our Previous Newsletters:

OpenChain Newsletter #54

By Monthly Newsletter, News
logo

​ Newsletter – Issue 54 – May 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. We accept suggestions and ideas. Feel free to mail us at any time.

This edition of the newsletter was created and shared by Qiuyue Qi of OpenSCA, and we provide our thanks for the contribution!

Main News

Let’s welcome CARIAD to the board and NORDEMANN as a new partner:

Activities

The OpenChain Project has joined NLnet Software Supply Chain Webinar Series, and also presented at GOTC and OSCAR in China.

Additionally, we held a mini-summit at the Linux Foundation Open Source Summit North America:

Case Study

There is a case study for people who are interested in AI topics:

Material

OpenChain ISO/IEC 5230 now has Wikipedia page in Spanish:

A CC0 version of REUSE.software Specification 3.0 is available:

We have updated OpenChain Conformance Badges, and added new mascots to the community.

For June, overview presentations have been released.

Routine

Education and legal work groups had regular meetings:

Check our monthly meeting below:

Others

The OpenChain Project has been featured at ‘Efficient IP management in a market increasingly using open source’ on IAM.

Check Out All Our Previous Newsletters:

OpenChain Newsletter #53

By Monthly Newsletter, News
logo

​ Newsletter – Issue 53 – April 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. We accept suggestions and ideas. Feel free to mail us at any time.

This edition of the newsletter was created and shared by Qiuyue Qi of OpenSCA, and we provide our thanks for the contribution!

Enlargement

Cloudera, Alibaba Cloud, China Mobile, SAIC Z-ONE and ByteDance have all announced conformance with ISO/IEC 5230.

LG Electronics also announced conformance with ISO/IEC DIS 18974, the forthcoming ISO standard for open source security assurance.

LG Electronics Announces OpenChain ISO/IEC DIS 18974 Conformant Program

Activities

The OpenChain Project has held the OSCAR Open Source Supply Chain Salon together with CAICT:

We have also delivered keynotes for Software Alliance Germany and at FOSS North 2023.

Survey

Our industry survey has been online for April.

Material

We have updated GPLv2 Compliance Flowcharts:

Webinar

We have held a webinar with an update on ClearlyDefined:

Routine Activities

Telco, education and legal work groups had regular meetings.

Checking our monthly meeting below:

Others

The OpenChain Project has been featured at the 2nd China Automotive Cyber Security and Data Security Conference 2023 and the FSFE Legal and Licensing Workshop 2023

Insight on AI Hallucinations Around Open Source Licenses from our partner:

Check Out All Our Previous Newsletters:

OpenChain Newsletter #52

By Monthly Newsletter, News
logo

​ Newsletter – Issue 52 – March 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. We accept suggestions and ideas. Feel free to mail us at any time.

This edition of the newsletter was created and shared by Qiuyue Qi of OpenSCA, and we provide our thanks for the contribution!

Enlargement

Socionext & Suzhou Prism Colorful Information Technology Co., Ltd. have all announced conformance with ISO/IEC 5230.

CESI joined the OpenChain Project as the official partner.

Activities

The OpenChain Project has had open discussions with LG Electronics and SK Group, presented at LF APAC Leadership Summit and delivered a speech at OSPO Summit.

Materials

There are two vital updates to our essential materials to follow:

Moreover, we have prepared an introduction to our standard for open source security assurance, ISO/IEC DIS 18974, for those who are interested.

The record of LF Training Courses Translation Project is also now available.

Webinar

We have held two webinars, respectively talking about an overview of SPDX 3.0 (#50) and the recap of FOSDEM (#49)

Routine

March has also witnessed lots of work done with our work groups and monthly meetings across the globe.

Our legal work group has been officially announced.

Both telco and export control work groups initiated insightful discussions.

Details of work groups in Germany, Korea and the UK can be found in the following links:

Checking our monthly meeting below:

Others

OpenChain ISO/IEC 5230:2020 is featured in Journal Of Software Volume 33, Issue 3, 2023.

Check Out All Our Previous Newsletters:

OpenChain Newsletter #51

By Featured, Monthly Newsletter, News

Newsletter – Issue 51 – February 2023

The OpenChain Newsletter provides a monthly summary of our work. It contains an overview of what we are doing to build trust around license compliance and security in the open source supply chain. This is a community newsletter, so we accept suggestions and ideas, and you can contact us by mail at any time.

Cool Statistic To Start The Year

The OpenChain Project now has 10 official third-party certifiers for our license compliance and security assurance standards.

You can now get third-party certified with ISO/IEC 5230 or the OpenChain Security Assurance Specification 1.1 anywhere in the world… and you have plenty of choice about who to work with. Of course, you have options when adopting our standards. The most common thing is actually for companies to start with self-certification, so if you are new to this… Learn more here)

Nice Outreach News

OpenChain now has a Wikipedia page about ISO/IEC 5230. Huge thank you to Marc-Etienne Vargenau at Nokia for making this happen.

Huge Revamp Of OpenChain Material Underway

Our reference library of over 1,000 documents to help you learn about our standards, train people or suppliers around open source, get policy templates, self-certification checklists and more has been totally overhauled. It is now easier to find material, easier to share material and easy to translate material.

We have also dramatically improved our community calendar to make it much easier to find our events, webinars and more.

ISO/IEC 5230:2020 Conformance

Yes Security and Panx Project announced adoption of our ISO/IEC standard for open source license compliance via the OpenChain website. Both companies self-certified. Yes Security is the first company from Brazil to announce conformance via our website. Well done!

Partner News

It was an exciting month for us on the partner side of things. First of all, we had OSPOCO and Taylor English Join The OpenChain Partner Program, and we had TIMETOACT GROUP Offer Open Source Certification Based On ISO/IEC 5230. However, the banner headline (as mentioned in the cool statistic section of this newsletter) is that we now have 10 official third-party certifiers around the world.

OpenChain Meetings And Events

Lots of recordings and minutes for those catching up this month.

Our global calls – where we edit the next generations of the license compliance and security assurance standards:

Other community meetings:

On the “external collaboration” side of things we had an OSS Compliance in 2022 / 2023 event co-organized with FOSSID. We were also featured with a speech and Q&A session at an OpenAnolis Standardization SIG Meeting in China at the invitation of Alibaba.

Webinars

This month we had two webinars. One covered new security tools and one unpacked fascinating data points around GPLv2 licensing. Did you know there have been 40 versions of the GPLv2 published on its official websites and there have been 12 different versions found in the Linux Kernel? Definitely a webinar to watch if you are interested in the licensing side of things.

Want to join our calls? Watch our webinars? Just check out our global calendar.

Training Material In The Supply Chain

Last month we mentioned that Continental Corporation made LFC193 a required course for their software developers from late Q3 2022. Since then we had two other soft announcements from community members about their adoption.

Coming Soon

For those wanting a sample of what’s on the community calendar for March…

Finally… If You Want To Talk About OpenChain…

Our new community education slides are now available. You will find a full overview of the project here and speaker notes to help you talk about what we do.

Check Out All Our Previous Newsletters:
https://www.openchainproject.org/newsletter

Quick Links

Legal: All trademarks belong to their respective owners. This newsletter is licensed under Creative Commons Attribution-NoDerivatives 4.0 International (CC BY-ND 4.0).