Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the decision-making process for forking dependencies in response to security vulnerabilities. Learn the rules of engagement used by Atsign when faced with CVE notifications and customer concerns about software bill of materials (SBOMs). Discover how to balance being a good community citizen while ensuring timely fixes for security issues. This 11-minute talk by Chris Swan from Atsign, presented at an OpenSSF event, provides valuable insights into when and how to fork dependencies responsibly in the face of unresolved vulnerabilities.