spdx / spdx-3-model

The model for the information captured in SPDX version 3 standard.
https://spdx.dev/use/specifications/
Other
71 stars 46 forks source link

Create a securityContact ExternalIdentifierType #861

Open goneall opened 3 months ago

goneall commented 3 months ago

Suggested during a review of a BSI proposal.

Having a security contact would support implementation of RFC 9116 section 2.5.3 as part of the SPDX metadata.

bact commented 3 months ago

May be benefit from thinking about this together with "Steward" concept in #855