Steve Winslow

Results 412 comments of Steve Winslow

> It would be very valid to have an `Apache-2.0 AND NONE`, however per my previous comment above. +1 -- this is what convinced me to change my mind from...

Hi all, I've recently been helping the LF with a writeup on implementing the Community Spec documents (https://github.com/CommunitySpecification/1.0/pull/12), based on some lessons learned from implementing this for [SPDX](https://github.com/spdx/governance). I'm starting...

Following from my earlier comment -- please take a look at the updated documents at https://github.com/swinslow/slsa-governance. I've prepared and customized these for SLSA, with the intention that these would eventually...

For a similar issue in docker/classicswarm, I note that it has now been corrected to refer to CC-BY-SA-4.0 in all cases (see [issue](https://github.com/docker/classicswarm/issues/2833), [pr](https://github.com/docker/classicswarm/pull/2984/files)). Is it possible to apply the...

Submitted PR to add this in Appendix II at: https://github.com/spdx/spdx-spec/pull/139

This has now been added to Appendix II in the v2.2 version of the spec: see discussion at https://github.com/spdx/spdx-spec/issues/134 However, since the v2.2 spec hasn't yet been released, I don't...

See also #1600 re: recommendations around use of new IDs in source code, during the lag period between merging a PR and the actual quarterly release being published.

I don't have a super-strong opinion either, but I'd be in favor of deprecating here. Partly for the reason @bradleeedmondson mentioned, to help with disambiguating; and partly because on the...

Discussed on legal team call 2019-03-07, decided to postpone making a call on whether to deprecate libpng now, will discuss again on a subsequent call.

I'm open to other peoples' views on whether adding "prior" could be a legally substantive difference. That said, I note that in [HPND](https://spdx.org/licenses/HPND.html) (which I believe we included as an...