devops-automation
devops-automation copied to clipboard
OSS Supply Chain Risk WG - Oct 10 2023 meeting
Date
10/10/2023
Untracked attendees
Name | Firm | Comment |
---|
Meeting notices
-
FINOS Project leads are responsible for observing the FINOS guidelines for running project meetings. Project maintainers can find additional resources in the FINOS Maintainers Cheatsheet.
-
All participants in FINOS project meetings are subject to the LF Antitrust Policy, the FINOS Community Code of Conduct and all other FINOS policies.
-
FINOS meetings involve participation by industry competitors, and it is the intention of FINOS and the Linux Foundation to conduct all of its activities in accordance with applicable antitrust and competition laws. It is therefore extremely important that attendees adhere to meeting agendas, and be aware of, and not participate in, any activities that are prohibited under applicable US state, federal or foreign antitrust and competition laws. Please contact [email protected] with any questions.
-
FINOS project meetings may be recorded for use solely by the FINOS team for administration purposes. In very limited instances, and with explicit approval, recordings may be made more widely available.
Agenda
- [ ] Convene, roll call, welcome new people
- [ ] Approve previous meeting minutes
- [ ] Review DevOps SIG project board
- [ ] Add Items Here
- [ ] AOB, Q&A & Adjourn (5mins)
Decisions Made
- [ ] Decision 1
- [ ] Decision 2
- [ ] ...
Action Items
- [ ] Action 1
- [ ] Action 2
- [ ] ...
Zoom info
Join Zoom Meeting
- https://zoom.us/j/95521041942?pwd=dHgwREU2TzBsS242ak1zYWZsUW9OUT09
- Meeting ID: 955 2104 1942
- Passcode: 443820
- Find your local number: https://zoom.us/u/aesEqmNODb
Github Repo: https://github.com/finos/devops-automation/
Project Board: https://github.com/orgs/finos/projects/33
Mailing List: Email [email protected] to subscribe to our mailing list
amol shukla/morgan stanley
Mimi Flynn / Morgan Stanley
James McLeod / FINOS
Gary O'Neall / SPDX
Information on the SPDX Build Profile:
- Overview and use cases: https://spdx.dev/learn/areas-of-interest/build/
- Meeting information: https://github.com/spdx/meetings#sub-groups-for-specific-topics
- Spec (note - we're going to have a more readable version in a couple work): https://github.com/spdx/spdx-3-model/tree/main/model/Build
- Minutes: https://github.com/spdx/meetings/tree/main/build
SPDX Functional Safety profile meetings: https://github.com/spdx/meetings/tree/main#functional-safety-profile-group-meetings
Linux Foundation Crowdfunding - https://lfx.linuxfoundation.org/tools/crowdfunding/
OSR BoK section on Compliant Usage - the whole section is worth a read, and please feel free to make a PR if you want to add / edit