Agenda items this week?

17 views
Skip to first unread message

Kim Lewandowski

unread,
Mar 30, 2021, 11:45:23 AM3/30/21
to ossf-wg-developer-identity
Hi Everyone,

Does anyone have any topics for our WG meeting this week? I will be giving a presentation on a security framework called SLSA. It will probably take 30 minutes, which means we’ll have time for 1 or 2 more items! See you then. 
--
Kim Lewandowski | Product Manager, Google Cloud Platform | klewan...@google.com 

Gavin Hindman

unread,
Mar 30, 2021, 12:11:40 PM3/30/21
to ossf-wg-developer-identity
I'd really like to see some focus on what the WG is going to deliver, and on what timeline.  We've had a lot of presentations on related topics and prior-art, but it's not clear to me what we're going to do with all of that.

-Gavin

Kim Lewandowski

unread,
Mar 30, 2021, 12:36:15 PM3/30/21
to Gavin Hindman, ossf-wg-developer-identity
Hi Gavin,

Do you want to drive this as an agenda topic? I don’t think any of us can mandate timelines to those who don’t work at our companies. The SLSA framework I’ll be presenting tomorrow is directly related to this WG. The first principle of SLSA is “non-unilateral” meaning no single person can modify the software artifact anywhere in the software supply chain without explicit review and approval by at least one other “trusted person.”

Are there projects you (or anyone else) are working on or excited about that relate to our working group? We’d love to hear about them!

--
You received this message because you are subscribed to the Google Groups "ossf-wg-developer-identity" group.
To unsubscribe from this group and stop receiving emails from it, send an email to ossf-wg-developer-i...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/ossf-wg-developer-identity/b56f2d28-4b18-45ff-bc07-88bfb32491e0n%40googlegroups.com.

Gavin Hindman

unread,
Mar 30, 2021, 12:40:33 PM3/30/21
to ossf-wg-developer-identity
Sure.  I think it's an open discussion, but I can try to do some prep.  Agree that timelines would be at best ratified goals/targets
Reply all
Reply to author
Forward
0 new messages