[openchain] Linux Foundation – Building Trust in Software Supply Chains - How OpenChain by the Linux Foundation and other projects enable a trusted supply chain for open source software

2022-10-27 Thread Sebastian Crane
Dear all, Today, I saw this plop into my inbox and thought that it would also be of interest to many of the SPDX Legal Team members. The Open Source Way is both an entertaining and educational podcast, and given its open source licensing slant, I had suspected that Shane would feature on it at

call at top of the hour

2022-10-27 Thread J Lovejoy
Hi folks, We have a regular SPDX-legal call at the top of the hour (noon, Eastern time) at https://meet.jit.si/SPDXLegalMeeting We'll have a look at whatever needs attention to close out our "documentation release" - some items that we need to address include: - updates to the SPDX License

Re: Introduction + question about CC0/confidentiality in SPDX 2.2

2022-10-27 Thread J Lovejoy
Hi Anna, Welcome! You have interpreted the CC0-1.0 designation and comment regarding confidentiality correctly. (Note, it is now section 6.2 in version 2.3 of the spec: https://spdx.github.io/spdx-spec/v2.3/document-creation-information/ ) There was much discussion on this in the very,