THE SPDX WIKI IS NO LONGER ACTIVE. ALL CONTENT HAS BEEN MOVED TO https://github.com/spdx
Technical Team/Minutes/2017-10-31
From SPDX Wiki
Oct. 31, 2017
Attendees
- Gary O’Neall
- Kate Stewart
- Yev Bronshteyn
- Sai Uday Shankar
Linux Con Europe Overview
- Went through workflows and scanning generation tools
- More than 1 open source projects
- Discussed API’s and integration across the tool flows
- Kate created a google doc to capture the minutes and slides: https://docs.google.com/document/d/1_4d1EtkUKvPGaiU3z1mWL0u0r79BWj3b7bWSO_Y2AqQ
License List Flag
- Discussion on API
- Concern about FSF Interpretation being included in the tools coding
- Kate will consolidate Kate’s original list with the FSF tools output and review with the FSF
- Links to issues
JFrog External API
- Discussed the external api’s and if we should align their API with our external ID in the appendix
- See https://www.jfrog.com/confluence/display/XRAY/Xray+REST+API and https://techcrunch.com/2017/10/12/google-ibm-and-others-launch-new-open-source-api-for-keeping-tabs-on-software-supply-chains/?ncid=mobilenavtrend for reference
- Kate will introduce the topic at an upcoming tech call