Skip to content

Commit

Permalink
Merge pull request #299 from nellshamrell/add-memory-safety-sandbox
Browse files Browse the repository at this point in the history
Add memory safety sandbox
  • Loading branch information
lehors committed Mar 25, 2024
2 parents a82df61 + 5d563e9 commit 8726f38
Showing 1 changed file with 50 additions and 0 deletions.
50 changes: 50 additions & 0 deletions process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md
@@ -0,0 +1,50 @@
## Creation of a new Special Interest Group (SIG) at Sandbox stage

### Proposed focus, intent, goals, and/or deliverables

Our Motivation, Objective, and Scope are outlined in the [README of our repo](https://github.com/ossf/Memory-Safety/blob/main/README.md)

Our original deliverable was revised language for Stream 4 of the OpenSSF's Mobilization plan. Our revised language for Stream 4 is [here](https://github.com/ossf/Memory-Safety/blob/main/docs/revised-stream-4-language.md).

We also established [common definitions of memory safety terms](https://github.com/ossf/Memory-Safety/blob/main/docs/definitions.md) to refer to in our work.

Our in progress deliverables include:
* [Best Practices - Memory-Safe By Default Languages](https://github.com/ossf/Memory-Safety/blob/main/docs/best-practice-memory-safe-by-default-languages.md)
* [Best Practices - Non-Memory-Safe By Default Languages](https://github.com/ossf/Memory-Safety/blob/main/docs/best-practice-non-memory-safe-by-default-languages.md)
* [The Memory Safety Continuum](https://github.com/ossf/Memory-Safety/pull/20)

### List SIG Lead(s)
* [Nell Shamrell-Harrington](https://github.com/nellshamrell) (Microsoft, Rust Foundation)

Check failure on line 17 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`Shamrell` is not a recognized word. (unrecognized-spelling)
* [Avishay Balter](https://github.com/balteravishay) (Microsoft)

Check failure on line 18 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`Avishay` is not a recognized word. (unrecognized-spelling)

### List of interested individuals
The SIG have a minimum of 3 members with 2 different organizational affiliations.
* Jay White, Microsoft
* Gabriel Dos Reis, Microsoft, [GabrielDosReis](https://github.com/GabrielDosReis)
* Charles Palmer, IBM Research, Dartmouth
* David Edelsohn, IBM
* Andrew Fryer, [Andrew-Fryer](https://github.com/Andrew-Fryer)
* Justin Cappos, NYU, [JustinCappos](https://github.com/JustinCappos)
* Andrew Lilley Brinker, Mitre, [alilleybrinker](https://github.com/alilleybrinker)

Check failure on line 28 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`Lilley` is not a recognized word. (unrecognized-spelling)

Check failure on line 28 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`Brinker` is not a recognized word. (unrecognized-spelling)

Check failure on line 28 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`alilleybrinker` is not a recognized word. (unrecognized-spelling)

Check failure on line 28 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`alilleybrinker` is not a recognized word. (unrecognized-spelling)
* Joshua J. Drake, [jduck](https://github.com/jduck)

Check failure on line 29 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`jduck` is not a recognized word. (unrecognized-spelling)
* Chris de Almeida, IBM, [ctcpip](https://github.com/ctcpip)

Check failure on line 30 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`ctcpip` is not a recognized word. (unrecognized-spelling)
* Jordan Harband, TC39, [ljharb](https://github.com/ljharb)

Check failure on line 31 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`ljharb` is not a recognized word. (unrecognized-spelling)

Check failure on line 31 in process/sig-lifecycle-documents/MEMORY_SAFETY_sandbox_stage.md

View workflow job for this annotation

GitHub Actions / Check Spelling

`Harband` is not a recognized word. (unrecognized-spelling)


### Governing Body
SIGs may report to an existing OpenSSF Working Group or directly to the TAC as their governing body. The SIG commits to providing the governing body quarterly updates on progress.
* [Best Practices Working Group](https://github.com/ossf/wg-best-practices-os-developers)

### SIG References
The SIG should provide a list of existing resources with links to the repository, and if available, website, a roadmap, demos and walkthroughs, and any other material to showcase the existing breadth, maturity, and direction of the SIG.
| Reference | URL |
|---------------------|-----|
| Repo |https://github.com/ossf/Memory-Safety |
| Meeting Agenda |https://docs.google.com/document/d/1RnIzqeKyrOJvs6vQ8xGH6TjZDoEFaGUs1NkAx--v_3Y/edit |
| OSSF Calendar Entry |Not sure how to link this, but there is one! |
| Website | |
| Security.md | |
| Roadmap | |
| code-of-conduct.md |https://openssf.org/community/code-of-conduct/ |
| Demos | |
| Other | |

0 comments on commit 8726f38

Please sign in to comment.