Episode 410 - Package identifiers are really hard episode artwork

EPISODE · Jan 8, 2024 · 31 MIN

Episode 410 - Package identifiers are really hard

from Open Source Security

Josh and Kurt talk about package identifiers. We break this down in the context of an OpenSSF response to a CISA paper on software identifications. The identifiers that get all the air time are purl, CPE, SWID, and OmniBOR. This is a surprisingly complex problem space. It feels easy, but it's not. Show Notes OpenSSF CISA response purl CPE OmniBOR SWID

Episode metadata supplied by the publisher feed · Published Jan 8, 2024

Embed this episode

Ready to play

Episode 410 - Package identifiers are really hard

0:00 31:52

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

Frequently Asked Questions

How long is this episode of Open Source Security?

This episode is 31 minutes long.

When was this Open Source Security episode published?

This episode was published on January 8, 2024.

Can I download this Open Source Security episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!