#PURL

Jean-Baptiste Mailletjbm@infosec.exchange
2026-03-10
2026-02-28
2026-02-25

#PURL is an open standard that gives every software package a universal ID.
Whether it’s npm, PyPI, Maven, containers, or OS packages. It provides a consistent, URL-like format to identify them all.

For OSPOs, this means:
✅ Unified license compliance across ecosystems
⚡ Faster vulnerability tracking
🔐 Better governance & supply chain visibility
🤝 Vendor-neutral integration with open tools

2026-02-25

🎙️ Next #OSPO OnRamp Webinar — March 20

🧩How #PURL transforms #OSPO operations w/ Philippe Ombredanne, creator of Package-URL (PURL)

🕥 10:30–12:00 CET
🌐 Join free: ospo-alliance.org/news/2026032

Software supply chains are more complex than ever — dozens of ecosystems, package managers, and dependencies.
🔍 Keeping track of what’s inside your software stack isn’t easy.

That’s where PURL comes in !

Bannière d'événement pour une conférence en ligne intitulée "How PURL transforms OSPO operations" organisée par l'OSPO Alliance On Ramp.
La date de l'événement est indiquée comme étant le 20 mars à 10h30 CET.
À gauche, un encadré rouge et bleu affiche le logo de l'OSPO Alliance et la date.
Au centre, le titre de la conférence en blanc sur fond bleu foncé.
À droite, une photo du conférencier, Philippe Ombredanne, avec sa description en dessous : "Lead Maintainer, AboutCode"
Aerofreak | USA WTF?aerofreak@hessen.social
2026-02-14

@MAKS23

ruzzia will be delighted. 😂

#purl #usa

2026-02-11
2026-02-04

Wednesday, February 4, 2026

"You cannot reward monsters": US lawmakers demand increased pressure on Russia -- Russian attack shows Moscow is not serious about peace, NATO chief says -- How Soviet nostalgia and silence enable wartime complicity on Russian YouTube -- How the Kremlin drafted Russia's hackers to attack the West, leading to a rare US court case ... and more

activitypub.writeworks.uk/2026

Tridon Mk.2 anti-aircraft system. Photo credits: BAE Systems AB
misryoummisryoum
2026-02-03

90% من الصواريخ المرسلة إلى أوكرانيا وصلت عبر مبادرة PURL

misryoum.com/alswarykh-almrslh

 قال الأمين العام لحلف الناتو، مارك روته، اليوم /الثلاثاء" إن 75 % من جميع الصواريخ الموردة إلى أوكرانيا لاستخدامها في الخطوط الأمامية، و90% من الصواريخ المخصصة للدفاع الجوي، قد تم تسليمها عبر برنامج "قائمة الاحتياجات الأوكرانية ذات الأولوية"، المعروف...

misryoum.com/?p=123741

2026-02-01

At the #AboutCode SBOM tools workshop we talked about creating a way of continuing the discussions. I've just created a #SBOM-tools slack channel in the @orcwg space. Join us to discuss #SBOM tools and interoperability!

orcwg.org/participate/

#SBOM #CYCLONEDX #SPDX #PURL

Going to #FOSDEM? Please join us to celebrate our recent success stories in ECMA TC54! #CycloneDX 1.7, Package URL (#PURL) 1.0 and the Common Lifecycle Enumeration 1.0 (#CLE). We are working to improve all of these and complete the Transparency Exchange API (#TEA) soon!

Join us in the Bedford hotel, Brussels, Friday January 30 at 17-19 for Drinks and light bites. Register att workshop.aboutcode.org with the code TC54FTW to reserve a ticket while they're available!

Looking forward to meeting you there!

#SBOM #CYCLONEDX #PURL #TEA #CLE

@CycloneDX
@owasp @fosdem

2026-01-23

Ukraine Update: The USA betrays Ukraine with PURL process for military aid.

Trump helps Russia to use saturation and time to overwhelm Ukraine while US bureaucratic delay and capitalist extortion result in fewer supplies for Ukraine, and less frequently delivered.

Fight the evil of Trump, support Ukraine, support journalism and the heroes who bring the truth of darkness to the light of day.

Share the friend link to bypass the paywall:
medium.com/@giorgioprovinciali

#ukraine #journalism #PURL #betrayal #russia #russiaisATerroristState #USA #trump #maga #shame #warcrimes #evidence

Come listen to Philippe Ombredanne in the GVIP Summit #01 in Brussels Jan 28!

#PURL #TC54 #LOVEACTUALLY
gvip-project.org/blog/2026/spe

2026-01-13

As an American, each day is a new descent into deeper reaches of shame and disappointment in my government and fellow Americans.

Such is the weirdness of encouraging Ukraine to find better avenues of support, as my government can only be trusted to fuck things up and make it better for the Kremlin.

Giorgio explains the specifics as only a reporter on the ground in Ukraine can - please support his work and share this friend link that bypasses the paywall:
medium.com/@giorgioprovinciali

#ukraine #journalism #hero #news #update #russiaisATerroristState #russia #kremlin #USA #trump #maga #shame #warcrimes #genocide #PURL

2026-01-09

Oh, #Russia channels have already started sabre-rattling towards #Poland. The Kremlin’s impotent leader took revenge for the humiliation in Venezuela on Lviv, and his media lapdogs decided to throw in the disliked neighbour… 😄

“Oreshnik was a clear hint to Poland that the logistics hub in Rzeszów could be the next target.”

Poland’s traditional answer so far to such threats was to throw in extra money to the #PURL fund, which I believe is a great ‘hint’ for these morons how this works in real life.

Screenshot of post on Russian Telegram with the threats transcribed above
:rss: Информационное агентствоunian@rss-mstdn.studiofreesia.com
2025-12-31

Еще две страны помогут покупать оружие для Украины: на что дали деньги
unian.net/politics/oruzhie-dly
#unian #оружиедляУкраины #PURL

:rss: Информационное агентствоunian@rss-mstdn.studiofreesia.com
2025-12-31

Еще две страны помогут покупать оружие для Украины: дали деньги на ракеты для Patriot
unian.net/politics/oruzhie-dly
#unian #оружиедляУкраины #PURL

:rss: Информационное агентствоunian@rss-mstdn.studiofreesia.com
2025-12-20

В НАТО рассказали, сократились ли поставки оружия в Украину из-за Трампа
unian.net/weapons/v-nato-rassk
#unian #НАТО #оружиедляУкраины #ДональдТрамп #PURL

CVE ProgramCVE_Program
2025-12-18

REMINDER FOR CNAs —

The Record Format was updated in October 2025 to add support for Package URLs (purls)

Learn more in this video from the “CVE Program Technical Workshop 2025” for , including when to use each & , & more

youtu.be/p6nbl58iL28?si=dQo0ng

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst