SPDX

125 posts

SPDX banner
SPDX

SPDX

@SPDXTeam

An open standard for communicating software bill of material (SBOM) information, including components, licenses, copyrights, and security references.

spdx.dev Katılım Ağustos 2017
124 Takip Edilen416 Takipçiler
SPDX retweetledi
OpenSSF
OpenSSF@openssf·
#SBOM alone may not encode enough detail to separate non-exploitable vulnerabilities from exploitable ones writes Surendra Pathak in our latest guest blog on VDR, VEX, OpenVEX & CSAF openssf.org/blog/2023/09/0…
Français
0
6
9
714
SPDX retweetledi
FOSSA
FOSSA@getfossa·
.@SPDX_SBOM v3.0 is in the works, and it's expected to include several major changes from the current v2.3. Get an early look at what to expect — such as support for emerging BOM use cases like AI and data — in our new blog. #SBOM @SPDXTeam fossa.com/blog/spdx-3-0/
English
0
6
8
1.1K
SPDX retweetledi
Mike D.
Mike D.@mdolan·
If you don't submit a comment, the USPTO will make it easier and more profitable for patent trolls to target #opensource users with bogus claims.
The Linux Foundation@linuxfoundation

The USPTO has issued proposed rules that will make it harder for everyone in #opensource to challenge bad #patents. Let them know you want a fair and open system for all, where anyone can seek a review of an invalid patent. Provide your comment: hubs.ly/Q01SLr490

English
0
4
9
1.3K
SPDX retweetledi
puerco
puerco@puerco·
Shaheem Azmal and Gaurav Mizra from Siemens presenting how Fossology reads licensing information from source code at the @fosdem #SBOM devroom
puerco tweet media
English
0
1
8
399
SPDX retweetledi
puerco
puerco@puerco·
Joshua Watt from Garmin showcasing the upcoming @SPDXTeam build profile as part of his deep dive into build environment SBOMs in the @yoctoproject
puerco tweet media
English
0
4
16
2.4K