Thank you Alfred. Very much appreciated. One thing I would like to add to the list is an official space for working groups within the SPDX project.
The space will work as a "public face" of a working group, providing a place to put contact, resources and work in progress that is not in the released spec yet. The "Area of interest" at https://spdx.dev/learn/areas-of-interest/ may serve some of the aforementioned purposes, but they are less updated and less technical (for good reason). The meeting repo at https://github.com/spdx/meetings/ also provide contacts of teams & groups, but focus only on meeting, no other resources. I thinking of something similar to https://openssf.org/community/openssf-working-groups/ or https://www.w3.org/community/ The SPDX AI working group is trying to come up with a simple website to address that at https://spdxai.github.io/ For example, presentations are collected here: https://spdxai.github.io/publications/ It would be nicer however if every group can use the same templates, not have to deal with the publishing infrastructure by themselves, and have a common domain name (easier to remember and consistent branding). Maybe something like: https://spdx.github.io/groups/ai/ https://spdx.github.io/groups/legal/ https://spdx.github.io/groups/safety/ cheers, Art On Mon, 8 Dec 2025 at 04:12, Gary O'Neall via lists.spdx.org <gary= [email protected]> wrote: > Hi Alfred, > > > Thanks to you and Victor for pulling this together! > > > > Seeing the increased activity in the outreach team brought a smile to my > face 😊 > > > > I don’t normally attend the outreach calls – it’s a bit early for us on > the west coast, so I’ll leave a couple of thoughts below: > > > > - Add Google to the list of companies that support SPDX – Brandon Lum > in particular has been very supportive and they are maintaining the SPDX > Gradle plugin <https://github.com/spdx/spdx-gradle-plugin> – I suspect > this is used in the Android development. > - Should we have any industry / vertical focused activities? The > FINOS community has interest in implementing SBOMs for Fintech. The > Automotive and Telcom vertical have active OpenChain activities closely > related to SPDX. > - Other open source programs have created ambassadors to help > evangelize their work to specific verticals and geographies. I attempted > this with SPDX about a year ago with little to no success, but perhaps with > renewed interest in outreach it may be more successful. > > > > Cheers, > Gary > > > > *From:* [email protected] <[email protected]> *On > Behalf Of *Alfred Strauch > *Sent:* Friday, December 5, 2025 11:53 AM > *To:* [email protected] > *Cc:* Kate Stewart <[email protected]> > *Subject:* Outreach Communication ideas and strategy > > > > Please find below a link to some thoughts and ideas related to SPDX > communications. It is also attached as a PDF. > > > > > https://docs.google.com/presentation/d/1kTM-YPbLHzrH76vYDDGsNzT9ZAoiq6yO-3gdNPRv-FU/edit?usp=sharing > > > > > Of course, these are only suggestions, but as Victor has emphasized many > times, OWASP and CycloneDX are very active in marketing. > > > > Considerations: OWASP Chapters - see link > > https://support.docs.owasp.org/wiki/spaces/OSD/pages/1245187/How+to+create+a+chapter > > > I am looking forward to discussing the documents. > > > > > > Alfred Strauch > > President > > Smart Talk Beacon Solutions Ltd. > > > > Email: [email protected] > > Web: www.smarttalkbeacon.com > > > > [image: Security: The Value of SBOMs | Flux] > > > > Confidentiality and Disclaimer: The information in this transmission may > be confidential and/or protected by legal professional privilege, and is > intended only for the person or persons to whom it is addressed. If you are > not such a person, you are warned that any disclosure, copying or > dissemination of the information is unauthorized If you have received the > transmission in error, please immediately contact this Office by telephone > or email, to inform us of the error and to enable arrangements to be made > for the destruction of the transmission, or its return at our cost. No > liability is accepted for any unauthorized use of the information contained > in this transmission. > If the transmission contains advice, the advice is based on instructions > in relation to, and is provided to the addressee in connection with, the > matter mentioned above. Responsibility is not accepted for reliance upon it > by any other person or for any other purpose. > > > > -- The job of a citizen is to keep his mouth open. -- Günter Grass -=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#1346): https://lists.spdx.org/g/Spdx-outreach/message/1346 Mute This Topic: https://lists.spdx.org/mt/116636182/21656 Group Owner: [email protected] Unsubscribe: https://lists.spdx.org/g/Spdx-outreach/unsub [[email protected]] -=-=-=-=-=-=-=-=-=-=-=-
