Skip to content
Open
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
85 changes: 85 additions & 0 deletions process/wg-lifecycle-documents/ORBIT_WG_incubating_stage.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,85 @@
## Working Group incubation application

### List WG Chair(s) and or Vice Chair

#### Co-Chairs
1. [Eddie Knight](https://github.com/eddie-knight) (Sonatype)
1. [Ben Cotton](https://github.com/funnelfiasco) (Kusari)
1. [Jenn Power](https://github.com/jpower432) (Red Hat)
1. [Nicole Bates](https://github.com/nikbat) (Microsoft)

### Working Group (WG) has met all Sandbox requirement
* "link to sandbox PR if exists"
* https://github.com/ossf/tac/pull/469

#### Mission of the Working Group
The WG must be aligned with the OpenSSF mission and address an unfulfilled need. It is preferred that topics falling with the scope of existing OpenSSF WGs are addressed within the existing wG rather than seek a new WG.
* "description of the WG mission"
* https://github.com/ossf/wg-orbit/blob/main/CHARTER.md#1-mission-and-scope

#### IP policy and licensing due diligence
When contributing to OpenSSF any existing material for the new WG to work on, the contribution must undergo license and IP due diligence by the Linux Foundation (LF).
* "yes / no / not applicable. If yes, provide a link to the corresponding GitHub issue."
* Not applicable.

#### TAC Sponsor
TAC sponsor agrees to attend WG meetings regularly, although they are not required to have a formal role in WG.
* "name of TAC sponsor"
* [Michael Lieberman](https://github.com/mlieberman85) (Kusari)

### List of regular contributors
The WG must have a minimum of 5 contributors from at least 3 different organizations attending regularly.
* "name, affiliation, GitHub ID"

- CRob, OpenSSF-LF, [SecurityCRob](https://github.com/SecurityCRob)
- Eddie Knight, Sonatype [eddie-knight](https://github.com/eddie-knight)
- John Kjell, ControlPlane, [jkjell](https://github.com/jkjell)
- Sarah Evans, Dell, [sevansdell](https://github.com/sevansdell)
- Jason Meridth, GitHub, [jmeridth](https://github.com/jmeridth)
- Adolfo García Veytia, Carabiner Systems, [puerco](https://github.com/puerco)
- Ben Cotton, Kusari, [funnelfiasco](https://github.com/funnelfiasco)
- Justin Cappos, NYU, [JustinCappos](https://github.com/JustinCappos)
- Jenn Power, Red Hat, [jpower432](https://github.com/jpower432)
- Evan Anderson, Custcodian, [evankanderson](https://github.com/evankanderson)
- Travis Truman, CVS Health, [trumant](https://github.com/trumant)
- and more...

### Mission of the Working Group
The WG must have a charter or mission statement for review by TAC
* Link to the WG charter or mission statement defining its goals.
* https://github.com/ossf/wg-orbit/blob/main/CHARTER.md

### Alignment with the OpenSSF MVSSR
The mission of the WG must be aligned with the [Mission, Vision, Values, Strategy, and Roadmap (MVVSR)](https://openssf.org/about/) of the OpenSSF. Please indicate to which of the three strategies and four pillars of the OpenSSF the WG is contributing to.

Strategies: *i) Catalyst for Change*, *ii) Educate and Empower the Modern Developer*, *iii) Ecosystem Leader*
* **Catalyst for Change**: ORBIT develops interoperable baselines and specifications (e.g., the Open Source Project Security Baseline and the Security Insights Specification) that drive adoption of "secure by design/default" practices by defining clear, actionable security standards for open source projects.
* **Educate and Empower the Modern Developer**: Through initiatives like ORBIT Launchpad, the WG provides resources and guidance that help developers and maintainers understand and implement security baselines in their projects.
* **Ecosystem Leader**: ORBIT focuses on interoperability—standardizing how security-relevant data is identified, formatted, and shared across tools and ecosystems—positions the OpenSSF as a leader in cross-ecosystem security collaboration.

Pillars: *i) Programs & Projects, ii) Education, iii) Public Policy, iv) Community & Events*
* **Programs & Projects**: ORBIT maintains several active technical initiatives including the Open Source Project Security Baseline, Security Insights Specification, Gemara, and ORBIT Launchpad, all focused on producing practical, reusable security artifacts.
* **Education**: The WG contributes educational resources through its specifications and Launchpad materials to help projects and end users alike.

### Governance
WG must have documented, initial group governance.
* Link to initial group governance doc
* https://github.com/ossf/wg-orbit/blob/main/CHARTER.md

WG must have met publicly at least 5 times in the last quarter since becoming Sandbox
* Link to public meeting notes (or ideally recordings)
* https://docs.google.com/document/d/1Hf-SsjYaAvY2Nk_jJ2-aHMqgBi1qg7oIj3PJWsCEe0U/edit?tab=t.0#heading=h.omyjy2x7t74i

WG must have defined Contributor Guide
* "link to contributor guide"
* https://github.com/ossf/wg-orbit/blob/main/CONTRIBUTING.md

Reference | URL |
|-----------------------|-----|
| Repo | https://github.com/ossf/wg-orbit |
| Meeting Agenda | https://docs.google.com/document/d/1Hf-SsjYaAvY2Nk_jJ2-aHMqgBi1qg7oIj3PJWsCEe0U/edit?tab=t.0#heading=h.omyjy2x7t74i |
| OSSF Calendar Entry | https://zoom-lfx.platform.linuxfoundation.org/meeting/93627442621?password=73db7cce-059e-420b-ab29-eabdcbcedf8b |
| Website | https://openssf.org/groups/orbit/ |
| Contributing guide | https://github.com/ossf/wg-orbit/blob/main/CONTRIBUTING.md |
| code-of-conduct.md | https://openssf.org/community/code-of-conduct/ |
| Other | |