“The standard, which is being developed under the watch of the
SPDX Working Group of the Linux Foundation, is intended to provide
a ‘uniform approach for documenting and sharing metadata’.
“It is hoped that developers will use SPDX to ‘communicate’
information relating to the content of software packages exchanged
with other organizations, a critically important step (so says
Black Duck) towards enabling supply chain efficiency and