todogroup / osposurvey

Open Source Programs (OSPO) Survey
https://todogroup.org
Creative Commons Attribution Share Alike 4.0 International
71 stars 26 forks source link

How do you handle open source in the supply chain? #13

Closed caniszczyk closed 5 years ago

LawrenceHecht commented 5 years ago

Are we specifically talking about components and dependencies?

I don't think this question should go too deep into software options. Thoughts?

Also, we can include something about compliance initiatives like suggested by @Toniprni in another issue.

caniszczyk commented 5 years ago

taken care of https://github.com/todogroup/survey/pull/32