Glossary
This glossary is a quick index of the main terms used across the Open Source Readiness site. Each entry links to the article or section that covers the topic in more detail.
Browse by topic
- Open Source Readiness
- Activities
- Artifacts
- Risks
- Regulations
- Roles
- Measurements
- Maturity Model
- Resources
- Training
- Certifications
- InnerSource
Open Source Readiness
Activities
- Ad-Hoc Open Source Usage — Activities › Level 1
- Building an Open Source Culture — Activities › Level 3
- Compliant Open Source Consumption — Activities › Level 2
- Compliant Open Source Usage — Activities › Level 2
- Contributing A Firm Open Source Project — Activities › Level 4
- Creating an Open Source Policy — Activities › Level 2
- Creating an Open Source Program Office (OSPO) — Activities › Level 2
- Developing in the Open — Activities › Level 3
- Ensuring Open Source Compliance For Contribution — Activities › Level 3
- Fostering Community Engagement — Activities › Level 3
- Hosting Open Source Projects — Activities › Level 4
- Incubating With An Open Source Foundation — Activities › Level 4
- Leveraging Open Source as a Strategy — Activities › Level 5
- Maintaining An Open Source Project — Activities › Level 4
- Making The Case For Contribution — Activities › Level 3
- Making the Most of Open Source Foundation Membership — Activities › Level 4
- Managing Open Source Based Projects — Activities › Level 1
- Managing Open Source Talent — Activities › Level 3
- Open Source Activities — Activities
- Open Source Consumption Training — Activities › Level 2
- Open Source Contribution — Activities › Level 3
- Open Source Contribution Training — Activities › Level 3
- Open Source Foundations — Activities › Level 4
- Open Source Software License Compliance Management — Activities › Level 2
- Open Source Supply Chain Security — Activities › Level 2
- Publication Processes — Activities › Level 3
- Software Inventory — Activities › Level 2
- Strategic Open Source Leverage — Activities › Level 5
- Surveillance Processes — Activities › Level 3
- Using Open Source Software — Activities › Level 1
- Why Open-Source a Firm Project? — Activities › Level 5
Artifacts
- Artifact Repository — Artifacts
- CLAs And DCOs — Artifacts
- Common Vulnerabilities and Exposures (CVEs) — Artifacts
- Data Loss Prevention Software — Artifacts
- Intellectual Property — Artifacts
- Open Source Artifacts — Artifacts
- Open Source Policy — Artifacts
- Open Source Program Office (OSPO) — Artifacts
- Open Source Review Board (OSRB) — Artifacts
- Open Source Strategy — Artifacts
- OpenChain ISO/IEC 18974:2023 - Security Assurance — Artifacts
- OpenChain ISO/IEC 5230:2020 - License Compliance — Artifacts
- Paid Support Relationships — Artifacts
- Reference FOSS Policy — Artifacts
- Repositories — Artifacts
- Software Bill of Materials (SBOM) — Artifacts
- Software Licenses — Artifacts
Risks
- Codebase Risk — Risks
- Data Leakage Risk — Risks
- Dependency Risk — Risks
- Legal Risk — Risks
- Open Source Risks — Risks
- Operational Risk — Risks
- Reputational Risk — Risks
- Staff Risk — Risks
- Strategic Risk — Risks
Regulations
- Accountancy Regulations — Regulations
- Anti-Money Laundering — Regulations
- Anti-Trust Regulations — Regulations
- Communications — Regulations
- Counter-Terrorism — Regulations
- Cross-Border Obligations — Regulations
- Cyber-Security — Regulations
- Export Controls — Regulations
- Intellectual Property — Regulations
- Labour Laws — Regulations
- Personal Information — Regulations
- Regulation — Regulations
- Sanctions and Export Restriction — Regulations
Roles
- Chief Executive Officer — Roles
- Chief Information Officer — Roles
- Chief Technology Officer — Roles
- CISO / Security Expert — Roles
- Developer — Roles
- External Regulators and External Audit — Roles
- Human Resources and Training — Roles
- Internal Audit — Roles
- Legal Team — Roles
- Line Of Business — Roles
- Open Source Program Office — Roles
- Open Source Roles — Roles
- Product Manager — Roles
- Risk Officer / Compliance — Roles
- Security Expert — Roles
- Site Reliability Engineers — Roles
Measurements
- Code Duplication — Measurements
- Open Source Measurements — Measurements
- Organisation Metrics — Measurements
- OSPO Support Function — Measurements
- Process Efficiency — Measurements
- Project Level Metrics — Measurements
Maturity Model
- Level 1: Ad-Hoc Usage — OSMM
- Level 2: Compliant Usage — OSMM
- Level 3: Contribution — OSMM
- Level 4: Engagement & Hosting — OSMM
- Level 5: Leadership & Strategic Advantage — OSMM
- Maturity Checklist — OSMM
- Maturity Summary — OSMM
- October 2024 OSFF Survey and Discussion — OSMM
- The Open Source Maturity Model — OSMM
Resources
- Considerations and Guidance for Electronic Communications Policies and Open Source — Resources
- External Resources — Resources
- FAQ — Resources
- Open Source Compliance Workflows — Resources
- OSLC Handbook — Resources
- OSLC Handbook Licenses — Resources
- OSR Resources — Resources
- White Paper: Business Value of Open Source in Financial Services — Resources
Training
- A Beginner's Guide to Open Source Software Development — Training
- Antitrust Laws and Open Source Software Project Management and Participation — Training
- Collaborating Effectively With Open Source Projects — Training › Management And Strategy
- Developing Secure Software — Training
- Effective Open Source Program Management — Training › Management And Strategy
- Ethics for Open Source Development — Training
- Implementing Open Source License Compliance Management — Training
- Inclusive Open Source Community Orientation — Training
- Introduction to Backstage: Developer Portals Made Easy — Training
- Introduction to Open Source License Compliance Management — Training
- Open Source Business Strategy — Training › Management And Strategy
- Open Source Compliance Programs — Training › Management And Strategy
- Open Source Contribution in Finance — Training
- Open Source Development Practices — Training › Management And Strategy
- [Open Source Introduction](/docs/bok/Training/Management-And-Strategy/LFC202-Open Source Introduction) — Training › Management And Strategy
- Open Source Licensing Basics for Software Developers — Training
- Open Source Management & Strategy — Training › Management And Strategy
- OSR Training and Certification — Training
- Securing Your Software Supply Chain with Sigstore — Training
- The Evolution of the Open Source Program Office (OSPO) — Training
- The Good Governance Initiative — Training
- The Open Source Way — Training
- Training — Training
- Understanding the Competitive Advantage of Open Source — Training
- Understanding the EU Cyber Resilience Act (CRA) — Training
Certifications
- Certifications — Certifications
- FINOS Financial Services Open Source Developer (FSOSD) — Certifications
- FINOS Financial Services Open Source Developer (FSOSD) Exam Instructions — Certifications
InnerSource
- InnerSource Culture — InnerSource
- InnerSource Job Creator — InnerSource
- InnerSource Maturity Matrix — InnerSource › Maturity Matrix
- InnerSource Resources — InnerSource
- Organizational Maturity — InnerSource › Maturity Matrix
- Project Maturity — InnerSource › Maturity Matrix
- SIG Leadership Team — InnerSource
- Thank Yous — InnerSource
- Welcome to the InnerSource SIG — InnerSource