
AboutCode has a long history of working with compliance and software supply chain security and integrity. In February, the Aboutcode Foundation joined as a member of the GVIP project where Philippe Ombredanne will join the GVIP project group.
The VulnerableCode open source platform is a package-first vulnerability management solution, based on open data and FOSS tools, to automate search for FOSS vulnerabilities and improve the security of software applications.
Philippe Ombredanne is also active in ECMA TC54 to standardise the Package URL (PURL) standard for component identifiers in SBOMs and vulnerability issues.
