Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Produce Software Bill of Materials for Government implementation #10

Open
jb3 opened this issue Aug 27, 2024 · 2 comments
Open

Produce Software Bill of Materials for Government implementation #10

jb3 opened this issue Aug 27, 2024 · 2 comments
Assignees
Labels
area: public relations Areas requiring clarification from our public relations advisor.

Comments

@jb3
Copy link
Member

jb3 commented Aug 27, 2024

Owl Corp has been contacted by a certain three letter agency wishing to use Thallium within their department duties, particularly their public outreach campaigns.

To comply with Government regulation, we are required to submit a Software Bill of Materials, henceforth referred to as (S-BOMB).

As you can see from our pnpm project on thallium-frontend, we have a standard JavaScript dependency count, which we will need to plant into the S-BOMB:

❯ pnpm list --depth 100 | wc -l
45734

Each of these dependencies require manual auditing of source code, as well as production of:

  • Project Name
  • Project Authors (ALL contributors)
  • Country of Production
  • License
  • X (Formerly Twitter) accounts of all Core Team Members
  • List of all subdependencies
  • Ties to any other three letter agencies

I am assigning our Public Relations Director who I have no doubt will be able to swiftly take care of this issue, and get us fully integrated with Uncle Sam.

@jb3 jb3 added the area: public relations Areas requiring clarification from our public relations advisor. label Aug 27, 2024
@jb3 jb3 moved this to In progress in Thallium To The Moon 💎🙌 Aug 27, 2024
@jchristgit jchristgit pinned this issue Aug 28, 2024
@jchristgit
Copy link
Contributor

jchristgit commented Aug 28, 2024 via email

@jchristgit
Copy link
Contributor

 / ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ \
|  /~~\                                   /~~\  |
|\ \   |       = THALLIUM =              |   / /|
| \   /|                                 |\   / |
|  ~~  |  The Thallium application       |  ~~  |
|      |  stands for civil rights,       |      |
|      |  moral rights, and the support  |      |
|      |  of guard dogs. We are proud    |      |
|      |  believers in a balanced        |      |
|      |  workforce, and contribute to   |      |
|      |  society by paying our taxes.   |      |
|      |                                 |      |
|      |  The Thallium application       |      |
|      |  consists of two parts,         |      |
|      |  backend and frontend. The      |      |
|      |  backend is a Python            |      |
|      |  application and powers the     |      |
|      |  frontend. The frontend is a    |      |
|      |  web application and powers     |      |
|      |  disappointment. Below a        |      |
|      |  screenshot of the frontend     |      |
|      |  application as browsed on a    |      |
|      |  modern browser (see "links     |      |
|      |  browser", 2024):               |      |
|      |                                 |      |
|      |      Hi, we've noticed you're   |      |
|      |  browsing with JavaScript       |      |
|      |  disabled.                      |      |
|      |      We are sorry, but we do    |      |
|      |  not support this at the time.  |      |
|      |      Please enable JavaScript   |      |
|      |  to use our site.               |      |
|      |                                 |      |
|      |  No further information is      |      |
|      |  available at this time.        |      |
|      |                                 |      |
 \     |~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|     /
  \   /                                   \   /
   ~~~                                     ~~~

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area: public relations Areas requiring clarification from our public relations advisor.
Projects
Status: In progress
Development

No branches or pull requests

2 participants