- Notifications
You must be signed in to change notification settings - Fork2
Collating an overview of the open source software supply chain landscape -- and synthesizing that survey in a hopefully-useful way.
License
AevaOnline/supply-chain-synthesis
Folders and files
Name | Name | Last commit message | Last commit date | |
---|---|---|---|---|
Repository files navigation
Human languages are ever-evolving, and meaning is imputed by thespeaker, and this is doubly true within technical domains where domain-specificlanguage is crucial to efficient collaboration and communication.
2021 demonstrated that there are already wide-spread differences in imputedmeanings of identical technical terms within the overarching domain of 'supplychain security', and these exist across many open source organizations andcommercial bodies. Furthermore, there has been a general lack of understandingoutside of domain-experts in what these terms mean, as no one other thansecurity wonks needed to understand this DSL. This has only led to furtherconfusion as new folks join existing communities and appropriate terms whoselegacy they may not fully see.
My hope in starting this work in the summer of 2021, and continuing now in2022, is that by first gathering lexicons from disparate organizations, I mayhelp us all arrive at common understandings and overcome the trap of the towerof babel, which, I am afraid we have all been falling into, no doubt moresobecause COVID has made in-person gatherings less common or comfortable.
I make no claim to be an authoritative voice on any one, let alone more thanone, of these domains, and invite correction wherever I have misrepresented, orfailed to account for, distinction.
In the end, I will consider this effort a wild success if it facilitates moreefficient communication of designs and expectations between domain expters,and helps the community-at-large identify gaps in the supply chain which wecan collectively work to secure.
WORK IN PROGRESS
I am moving my"Analysis of the supply chain landscape" gDoc from google togithub to make it easier to track changes and take contributions, and beginworking in earnest on the 'synthesis' portion of this effort.
About
Collating an overview of the open source software supply chain landscape -- and synthesizing that survey in a hopefully-useful way.
Resources
License
Uh oh!
There was an error while loading.Please reload this page.
Stars
Watchers
Forks
Releases
Packages0
Contributors5
Uh oh!
There was an error while loading.Please reload this page.