
SPDX
@spdxteam
An open standard for communicating software bill of material (SBOM) information, including components, licenses, copyrights, and security references.
ID: 900771635707424768
http://spdx.github.io/spdx-spec/ 24-08-2017 17:27:48
125 Tweet
422 Followers
125 Following

Gareth Rushgrove
@garethr
VP Product @snyksec. @openpolicyagent Conftest maintainer. Developer, designer, product. Open source geek. Devops Weekly. @gdsteam alum. he/him.
puerco
@puerco
Adolfo García Veytia / Technical Lead @Kubernetesio SIG Release / Staff Software Engineer @StackLokHQ / historian / WorldCyclist / fmr @chainguard_dev @uservers
William Bartholomew
@iamwillbar
He/him, Australian-born, USA-residing Security Strategy Director - AI & Supply Chain Cybersecurity Public Policy @ Microsoft. Views are my own.
uosןıW qoɔɐJ
@jacobdjwilson
Security @Gemini, MBA graduate @umich, Alumni @michigantech #CyberSecurity #ApplicationSecurity #Compliance #AI #Embedded #IoT #Opensource
Chris Aniszczyk (@[email protected])
@cra
🌻 Building a Better World Through Open Collaboration / @CloudNativeFdn @linuxfoundation / Always Paying it Forward / bsky.app/profile/cra.dev
The Linux Foundation
@linuxfoundation
A nonprofit organization enabling mass innovation through open source. #linux #kubernetes #riscv #hyperledger #anuket #openssf #openjs #o3de and more!
Jonas Rosland
@jonasrosland
Director of Community @vast_data for @thecosmosai. Executive Director @hitsaveorg. He/him. DMs are open. @[email protected]
Terri O 🍁
@terriko
web security researcher, photographer, teacher, open source geek, naturalist, musician, maker, reader... with a phd in horribleness (err, computer security)
brianbehlendorf
@brianbehlendorf
Also @[email protected] BoD @Mozilla, @Filecoin, @EFF. Formerly AI and OWF @LinuxFoundation, GM @openssf, ED @Hyperledger, CTO @WEF, et al. He/him.
David Maynor
@dave_maynor
No tree, it is said, can grow to heaven, unless it’s roots reach down to hell. Offensive Security, AI LLM Ops, hardware hacking
Michael Lieberman
@mlieberman85
Supply Chain Security Person
Gabriele Columbro
@mindthegabz
GM @lf_europe, ED of @finosfoundation, Open Sorcerer, @theASF committer, Speaker, SSC Napoli supporter, reggae lover, special needs dad
Steve Lasker
@stevelasker
DataTrails, Docker, Former @Microsoft, @IETF, @OCI_ORG, @ORASPROJECT focusing on secure artifact workflows, Sailing/Racing, Biking, Climbing
Stephen Augustus | 🦋 @auggie.dev
@stephenaugustus
Over on #Bluesky now: bsky.app/profile/auggie… // #BlackTechTwitter
James Strong
@strongjz
SA @isovalent, @Networkandk8s Author, ingress-nginx maintainer, weightlifter, ACG instructor,adjectives, yay, Opinions my own? he/him.
Omar Ωr Santos
@santosomar
Cybersecurity, AI security research, bug hunting, IR, threat intel, @redteamvillage_ lead. @Cisco PSIRT. Prior @USMC. Author of over 25 books.
the real blake
@voteblake
building @galvanickco
Anchore
@anchore
Securing and managing the software supply chain. Proud parent of @SyftProject and @GrypeProject.
Allan is @allanfriedman on bsky & infosec.exchange
@allanfriedman
#SBOM Champion. Full service technocrat. Now at @CISAgov, formerly NTIA. Lapsed{engineer, academic, author}. Personal Account.
VM (Vicky) Brasseur has decamped to Mastodon
@vmbrasseur
Find me @[email protected]
Tracy Miranda
@tracymiranda
Making open source secure by default. Previously at @chainguard_dev, @cdeliveryfdn, @cloudbees. Open source powered. 🇨🇦 🇬🇧 🇰🇪
Shane Coughlan
@opendawn
GM @linuxfoundation. Advisor @worldmobilegroup. Advisor @Asylum_Labs. General Assembly Member @OpenForumEurope. Other stuff too.
Brandon Lum
@lumjjb
🔑CNCF Security TAG Co-Chair Emiritus 💻Google Engineer 🎸Musician/Guitarist All things Containers + Security... Opinions are my own...
Takashi NINJOUJI
@takashininjouji

Dan Luhring
@danluhring
Heading up Vulnerability Management @chainguard_dev
OpenUK
@openuk_uk
UK leadership and global collaboration in Open Tech Sign up to newsletter openuk.us4.list-manage.com/subscribe?u=9d…
Santiago
@torresariass
Assistant Professor of ECE and Security Bricoleur @PurdueEngineers | @arch_security | views are my own
Axel Baumann
@axelbaumann

Mark Radcliffe
@markfradcliffe
Mark Radcliffe is an advisor on intellectual property and financing strategies to the innovation economy. He retired in 2023 after 40 years practicing law in SV
Zoran Jovanović 🌻💉x4
@jovzoran
Architect @ Volvo Cars (ex Sony). Opinions my own. He/him (cis). @jyz.bsky.social
Hilary Carter 🇨🇦🇮🇪🇬🇧
@tweetfromhilary
You can find me @[email protected] 🐧
GCC - GNU Toolchain
@gnutools
GCC, Binutils, GDB, GLIBC. The system compiler for the FOSS and Linux software ecosystem. Continually Improving.
Furkan Türkal
@furkanturkai
swe @Trendyol | foss | cncf | sscs | platform | k8s | containers | devx | arch | compilers | electronics | game dev | flyin' around clouds | opinions are GPLv3
Dan Lorenc
@lorenc_dan
OSS Supply Chain Security. Founder/CEO/Primary Ariba Admin at chainguard.dev Sigstore: sigstore.dev
Ariel Richtman (gone, see fediverse)
@arielrichtman
DevOps, Cloud/Platform Engineering, and all things in facilitative infrastructure @[email protected]
Software Heritage
@swheritage
We collect, preserve, and share #software #sourcecode for present and future generations. #swh #softwarecommons #freesoftware #opensource
FOSSA
@getfossa
FOSSA is a leading application security and compliance platform that specializes in helping engineering teams deliver trusted software.
CNCF
@cloudnativefdn
CNCF is the home of @kubernetesio, @prometheusio, @envoyproxy, and many more. Join us at #kubecon.io - Jun 10-11 in HK, Jun 16-17 in Tokyo
Reproducible Builds
@reprobuilds
A set of software development practices that create an independently-verifiable path from source code to the binary code used by computers.
Alex Goodman
@alexgoodman87
Tech lead for OSS @anchore
tektoncd
@tektoncd
Twitter account for the Tekton project: github.com/tektoncd
OpenSSF
@openssf
Open Source Security Foundation (OpenSSF) openssf.org Together, we're securing the #opensource ecosystem #OSSsecurity social.lfx.dev/@openssf
developer-guy
@developerguyba
🚀CNCF Ambassador 23• 🐳 Docker Captain 23•🎖Best Sigstore Evangelist 22 • ㏅CDF Ambassador 23 • 🇹🇷@kcdturkey Organizer •🕴Organizer @cloudnativetr @devopstr
Luke Hinds
@decodebytes
No longer active here; find me on: bsky.app/profile/lukehi…
sigstore
@projectsigstore
sigstore is a non-profit , public good software signing service funded under the OpenSSF. sigstore.dev [email protected]
ELISA Project
@projectelisa
ELISA Project aims to make it easier to build & certify safety-critical apps. Follow on LinkedIn for updates: linkedin.com/company/elisa-…
Joshua Watt
@jpew_dev

Chainguard ⛓️
@chainguard_dev
The safe source for open source (& memes). Secure your software with zero CVE container images!
Syft
@syftproject
Syft is an open source tool to generate a Software Bill of Materials (SBOM) from a container image or filesystem. Created and maintained by @Anchore.
Grype
@grypeproject
Grype is an open source vulnerability scanner for Software Bills of Material (SBOMs), containers, and filesystems. Created and maintained by @Anchore.
Nguyen Van The
@nguyenv54992667
Tot
sbomx
@sbom_x
Software Bill of Materials · Software Supply Chain Security · License Check · Vulnerability Analysis
Surendra
@interlynksp
Enabling security, transparency, and compliance in the software supply chain @ interlynk.io
Omkhar Arasaratnam
@_omkhar
omkhar.net || skscholarship.com || infosec.exchange/@Omkhar || bsky.app/profile/omkhar… || linkedin.com/in/omkhar
SPDX SBOM
@spdx_sbom
Open standard for communicating Software Bill of Material information (SBOMs) | @linuxfoundation open source project | Freely available ISO/IEC 5962:2021
Zephyr Project
@zephyriot
An #opensource project that builds a safe, secure & flexible RTOS for resource-constrained devices. #ZephyrRTOS #ZephyrDevSummit
CYBEATS
@cybeatstech
Cybeats, a cybersecurity leader, enhances software supply chain transparency with SBOM management. Specializing in risk management, we ensure software security.
Google Open Source
@googleoss
Announcing new open source releases, exploring projects, sharing how we approach FOSS, and supporting communities around the world.
Ana JS
@anajsana95
OSPO PM @todogroup | @linuxfoundation 🚀 Formerly at @bitergia 🦉English • Español • 日本語 🇯🇵 M.S #DataScience 📊 #DevRel 🥑 #OpenSourceDesign 👩🎨
Justin Hutchings
@jhutchings0
Senior Director of PM @cloudflare | Formerly @github @microsoft. Mostly tech, security, Star Trek 🖖🏻, with a sprinkle of far left political outrage.