Closed shanecoughlan closed 1 year ago
This would also address a bug with our root readme being out of sync with the spec:
Scope
This document specifies the key requirements of a quality Open Source Software Security Assurance Program that establishes trust between organizations exchanging software solutions comprised of Open Source Software. https://github.com/OpenChain-Project/Security-Assurance-Specification/blob/main/README.md
Fixing in both locations now as this is a critical issue for understanding the spec on first read, and will have to be fixed regardless.
During an earlier edit cycle the "Scope" section was cut out / merged with intro, and we went straight to definitions. Corrected language would look like this to also align with Licensing Spec 3.0:
1 - Scope
This document specifies the key requirements of a quality open source security assurance program in order to provide a benchmark that builds trust between organizations exchanging software solutions containing open source software.