Skip to content

Commit 5e5a957

Browse files
committed
Update openchain-standards-model-provisions.0.4.md
Updated as per the Call 2023-06-29 with restructuring of the supplier information pack material at the top, and the optional issues below, plus formatting fixes.
1 parent 9c0236c commit 5e5a957

File tree

1 file changed

+23
-23
lines changed

1 file changed

+23
-23
lines changed

Adoption-Preparation/Model-Provisions/openchain-standards-model-provisions.0.4.md

Lines changed: 23 additions & 23 deletions
Original file line numberDiff line numberDiff line change
@@ -89,7 +89,7 @@ The goal of this document is to ensure people can understand options. We will no
8989

9090
#### 1.8.5. [usual indemnity wording]
9191

92-
# Optional Issue Structure:
92+
# Below is a Series of Optional Model Language Issues in Original Risk Grid Format:
9393

9494
Each issue is formatted as follows:
9595

@@ -101,23 +101,23 @@ Each issue is formatted as follows:
101101
- Supplier's Arguments 
102102
- Customer's Arguments 
103103

104-
# Overarching Topics
104+
## Overarching Topics
105105

106-
## Issue - Inclusion of OpenChain ISO/IEC 5230
106+
### Issue - Inclusion of OpenChain ISO/IEC 5230
107107

108-
### Commentary 
108+
#### Commentary 
109109

110110
None listed.
111111

112-
### Who is best placed to bear risk? 
112+
#### Who is best placed to bear risk? 
113113

114114
Supplier.
115115

116-
### Best mechanism to tackle risk 
116+
#### Best mechanism to tackle risk 
117117

118118
None listed.
119119

120-
### Sample Wording 
120+
#### Sample Wording 
121121

122122
The Supplier warrants that the [Software] [defined components of the Software] originate[s] from an OpenChain ISO/IEC 5230:2000 Conformant Program [or Programs] [, with the OpenChain ISO/IEC 5230:2000 Conformant Program being specified in the Supplier Information Pack].
123123

@@ -129,29 +129,29 @@ and
129129

130130
[The Supplier does not warrant that use, modification or further distribution by the Customer of the Software constitutes a continuation of adherence to an OpenChain ISO/IEC 5230:2000 Conformant Program].
131131

132-
### Supplier's Arguments 
132+
#### Supplier's Arguments 
133133

134134
The Supplier may argue that the inclusion of these requirements or the extent of the requirements included introduce a cost-burden that need to be offset.
135135

136-
### Customer's Arguments 
136+
#### Customer's Arguments 
137137

138138
The Customer is receiving a potential liability regarding third-party intellectual property along with the Software deliverable from the Supplier. As such, it is reasonable to request that the Supplier adheres to international standards related to the licensing of this third-party intellectual property.
139139

140-
## Issue - Inclusion of OpenChain ISO/IEC DIS 18974
140+
### Issue - Inclusion of OpenChain ISO/IEC DIS 18974
141141

142-
### Commentary 
142+
#### Commentary 
143143

144144
None listed.
145145

146-
### Who is best placed to bear risk? 
146+
#### Who is best placed to bear risk? 
147147

148148
Supplier.
149149

150-
### Best mechanism to tackle risk 
150+
#### Best mechanism to tackle risk 
151151

152152
None listed.
153153

154-
### Sample Wording
154+
#### Sample Wording
155155

156156
The Supplier warrants that the [Software] [defined components of the Software] originate[s] from an OpenChain ISO/IEC DIS 18974 Conformant Program [or Programs] [, with the OpenChain ISO/IEC DIS 18974 Conformant Program being specified in the Supplier Information Pack].
157157

@@ -163,29 +163,29 @@ and
163163

164164
[The Supplier does not warrant that use, modification or further distribution by the Customer of the Software constitutes a continuation of adherence to an OpenChain ISO/IEC DIS 18974 Conformant Program]. 
165165

166-
### Supplier's Arguments 
166+
#### Supplier's Arguments 
167167

168168
The Supplier may argue that the inclusion of these requirements or the extent of the requirements included introduce a cost-burden that need to be offset.
169169

170-
### Customer's Arguments 
170+
#### Customer's Arguments 
171171

172172
The Customer is receiving a potential liability regarding security along with the Software deliverable from the Supplier. As such, it is reasonable to request that the Supplier adheres to international standards related to the managing of security assurance related to the Software.
173173

174-
## Issue - Determining if the OpenChain Conformant Program is self-certified or third-party certified
174+
### Issue - Determining if the OpenChain Conformant Program is self-certified or third-party certified
175175

176-
### Commentary 
176+
#### Commentary 
177177

178178
None listed.
179179

180-
### Who is best placed to bear risk? 
180+
#### Who is best placed to bear risk? 
181181

182182
Supplier
183183

184-
### Best mechanism to tackle risk 
184+
#### Best mechanism to tackle risk 
185185

186186
None listed.
187187

188-
### Sample Wording 
188+
#### Sample Wording 
189189

190190
The Supplier warrants that the OpenChain [ISO/IEC 5230:2000][ISO/IEC DIS 18974] Conformant Program [or Programs] referenced in the relevant [purchasing agreement[s]] [contract[s]] is self-certified as per the checklists or questionnaires provided by the OpenChain Project.
191191

@@ -197,11 +197,11 @@ and
197197

198198
[The Supplier will produce documentation to verify that the OpenChain [ISO/IEC 5230:2000][ISO/IEC DIS 18974] Conformant Program [or Programs] has undergone the disclosed certification process.]
199199

200-
### Supplier's Arguments 
200+
#### Supplier's Arguments 
201201

202202
None.
203203

204-
### Customer's Arguments 
204+
#### Customer's Arguments 
205205

206206
The Customer requires clarity regarding the type of certification that the Supplier has undergone to contextualize their risk. A Customer may regard third-party certification as preferable due to the inherent audit involved. Alternatively, a Customer may be satisfied that self-certification is sufficient given that OpenChain ISO/IEC 5230:2000 or ISO/IEC DIS 18974 both require the party with a conformant program to maintain documentation on how they accomplished their conformance.
207207

0 commit comments

Comments
 (0)