Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Vendor definition #37

Open
tschmidtb51 opened this issue Aug 21, 2024 · 4 comments
Open

Vendor definition #37

tschmidtb51 opened this issue Aug 21, 2024 · 4 comments
Labels
taxonomy tc-discussion Further TC discussion is needed

Comments

@tschmidtb51
Copy link
Contributor

tschmidtb51 commented Aug 21, 2024

As discussed in today's TC meeting, we should define the vendor. Here is the definition of CSAF as a starting point:

vendor: the community, individual, or organization that created or maintains a product (including open source software and hardware providers)

@tschmidtb51
Copy link
Contributor Author

We might need to also add something about services:

product: is any deliverable (e.g. software, hardware, specification,...) which can be referred to with a name. This applies regardless of the origin, the license model, or the mode of distribution of the deliverable. Also services fall under that definition.

@santosomar santosomar added tc-discussion Further TC discussion is needed taxonomy labels Aug 21, 2024
@p-rog
Copy link

p-rog commented Aug 22, 2024

The product clarification should be part of the Product Lifecycle definition and also should be included in the product category like we discussed recently. I've adjusted the #35 please take a look and comment there if you like it :)

I will try to propose a comprehensive vendor definition soon (beginning of September).

@thschaffr
Copy link

Hello team,

as discussed in the previous meeting, @p-rog and I worked on the following draft proposal for the term vendor.
The definition has been closely aligned with the existing definition from CSAF.

Vendor refers to the community, individual, or organization that created or maintains a product (software, hardware, managed service and other deliverables). This includes, but is not limited to, open-source software and hardware providers.

We are looking forward to the input from the TC.
Thank you.

@thschaffr
Copy link

The motion to accept the definition above is available at:
https://groups.oasis-open.org/discussion/motion-to-accept-the-vendor-definition

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
taxonomy tc-discussion Further TC discussion is needed
Projects
None yet
Development

No branches or pull requests

4 participants