
By Jennifer Bly, OpenSSF
The August OpenSSF Town Hall brought together the open source community to hear the latest and greatest about the work going on to secure the open source software supply chain. Both the Town Hall slide deck and event recording are available for you to view.
Highlights from the Town Hall included:
- OpenSSF Tour and Membership Update by Brian Behlendorf, OpenSSF
- Securing Software Repos by Dustin Ingram, Google
- Securing Critical Projects and Security Audits by Amir Montazery, OSTIF
- Signing, Verifying and Protecting Software with Sigstore by Asra Ali, Google
- How to Get Involved in OpenSSF Working Groups and Projects by David A. Wheeler, Linux Foundation / OpenSSF
- Q&A which surfaced questions along the lines of:
- With all the activities going on in security and standards to share information, how do we ensure that everything is aligned and doesn’t compete?
- Are there any plans, ideas, or groups working on reducing the amount of work for developers while increasing security?