The OpenChain Project will run a mini-summit adjacent to Open Source Summit Europe (OSS EU) on the 18th of September 2023. As with previous mini-summits, we encourage everyone to come together and network in-person. There is also an option to attend virtually. There is a nominal fee of $5 to attend in-person but you can contact us if the causes issues for your budget.
During Open Source Summit North America (OSS NA), we had two talks on automation for security and compliance, and it was clear that this topic resonated. The Q&A ran long, and our agenda has to be shortened to reflect this.
To address this obvious market interest, we will again return to automation for OSS EU, and we will invite some of our European colleagues to do deep dives into the current state of the market. We want to ensure this is a practical event focused on the implementation of processes that support our standards for license compliance and security assurance in organizations.
Chris, Co-Chair of the Specification Work Group, hosted our monthly North America and Asia meeting. As usual, the focus was on editing the next generation of our specifications.
The focus of this call was on the Security Specification (ISO/IEC DIS 18974) and two issues were discussed and provisionally closed:
We have a new GitHub repository to hold all the meeting decks from the Monthly Meetings focused on editing next generation versions of our specifications:
In 2017 the OpenChain Project and FSFE collaborated to make a CC0 version of the REUSE.software Specification 1.0 available for everyone to integrate into their organization processes and business logic. The goal is to eliminate any friction in leveraging this mechanism for better software management.
Please note that the REUSE.software initiative has grown substantially since the first generation of its release. You can find significant resources, including tooling to help usage, on the official REUSE.software website: https://reuse.software
The OpenChain Project provides the global community with conformance badges. These allow organizations to easily show they have an OpenChain Standard-Related Program.
Note: we have added SVG versions of the badges along with AI, PNG, JPG and other formats. This tracks our move towards MarkDown and SVG where possible to make it easier to use things anywhere at any size.
Our 2nd meeting will take place on 2023-05-25 at 16:00 UTC (09:00 PDT / 18:00 CEST / 00:00 CST) to continue our work. Meanwhile, keep up-to-date via our mailing list: https://lists.openchainproject.org/g/legal-wg
Reminder:
The goal is to ensure people can understand options. We will not be prescriptive and these model provisions will remain part of the OpenChain reference material. They will not be included in the standards themselves.
Linux Foundation Research has launched the World of Open Source: Global Spotlight 2023 survey to explore the state of open source around the world. The research will investigate regional open source trends including the size and scope of open source programs across organizations and industries, opportunities and challenges in private and public sector engagement in open source, the value proposition of open source, and the use and adoption of open source technologies and best practices.
Your perspective is critical for us to capture open source trends at a global level.The survey should only take 10-15 minutes to complete.
*This offer is available to anyone who completes the World of Open Source: Global Spotlight 2023 survey and uses the applicable coupon to purchase an e-learning course or certification between April 18, 2023 and August 30, 2023, 23:59 UTC. It is NOT valid for any other combination of e-learning or instructor-led-training courses or certifications. Discount limited to individual purchases ONLY. Offer not valid with any other discount combinations. Offer does not include FINOPS.
PRIVACY
You will not be asked for any personal identifying information. Reviews are attributed to your role, company size, and industry. Responses will be subject to the Linux Foundation’s Privacy Policy, available at https://linuxfoundation.org/privacy.
VISIBILITY
The data we collect from this survey will be analyzed to produce an in-depth survey report that will be shared with all survey participants and will be published on the Linux Foundation website in 2023. The dataset from this survey and instructions for its use will be made publicly available on the Linux Foundation’s Data.World account.
QUESTIONS
If you have questions regarding this survey, please email us at reseach@linuxfoundation.org
You can catch the recording of our latest OpenChain Education Work Group meeting below. Work was focused on the supplier education leaflet. We are getting close to an updated release version and your review would be super useful. This document will be formatted for PDF distribution (as well as MarkDown final source), and is targeted towards being a “one attachment” way to get your suppliers up-to-speed on the basics needed for open source, compliance and security assurance.
The next meeting of the workgroup will be occurring on the 7th of June. Martin has kindly offered to host us at First Light Fusion in their office in Yarnton, just outside Oxford. We’ll be starting things off at 12:45 with arrivals welcome from 12:00 for refreshments and informal discussions. Both in-person and online attendance are possible.
We’ll set up an Eventbrite shortly with a detailed agenda. Please drop me an email if you would like to add anything. Our initial draft agenda includes:
An update from Martin on the bitesized videos.
An update from myself (Finnian) on the anonymised case study project. If people have any suggestions about how to tailor this project to suit you and your organisation, please let me know.
Case studies workshop.
Discussion around liaising with the Japan WG.
A studio area (potentially – tbc) available 16:00-17:00 for videoing of introductions and testimonials.