Skip to main content

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] [List Home]
[open-regulatory-compliance] Vulnerability Handling Task Force Meeting Minutes

Hi all,

Please find the minutes for today's call here: https://github.com/orcwg/orcwg/blob/main/cyber-resilience-sig/minutes/vulnerability-handling-task-force/2025-06-19-mom-vulnerability-handling-tf.md

Please find the agenda for the next meeting (July 3) here: https://github.com/orcwg/orcwg/blob/main/cyber-resilience-sig/minutes/vulnerability-handling-task-force/2025-07-03-mom-vulnerability-handling-tf.md

As agreed during today's call, please use this email thread to discuss topics for potential TF deliverables.

Here are some possible topics that were raised:
  • A document describing the role and obligations of stewards
  • Best current practise for SBOM in open source projects
  • Describing the relation between open source projects and manufacturers in regards to vuln management
Additionally, it might be worth getting acquainted with the deliverables plan as it contains a number of deliverables that might be interesting for this TF to get involved with or to drive.

Best,

--tobie

---
Tobie Langel
Tech Lead ORC WG, Eclipse Foundation
Principal, UnlockOpen

Back to the top