OpenJS
Freiwillige Ex-ante-Transparenzbekanntmachung
Dienstleistungen
Abschnitt I: Öffentlicher Auftraggeber/Auftraggeber
Ort: Leipzig
NUTS-Code: DED51 Leipzig, Kreisfreie Stadt
Land: Deutschland
Kontaktstelle(n):[gelöscht]
E-Mail: [gelöscht]
Internet-Adresse(n):
Hauptadresse: https://sovereigntechfund.de/
Abschnitt II: Gegenstand
OpenJS
The OpenJS Foundation is made up of 32 open source JavaScript projects including Appium, Dojo, Electron, jQuery, Node.js, and webpack. OpenJS aims to support the healthy growth of JavaScript and web technologies by providing a neutral organization to host and sustain projects, as well as collaboratively fund activities that benefit the ecosystem as a whole.
The OpenJS Foundation hosts and supports the JavaScript ecosystem and related web technologies, such as Node.js, jQuery, Jest, Electron, webpack, ESLint, Node-RED and Appium. This project aims to improve the security and reliability of JavaScript projects hosted at OpenJS, relieve the pressure on core JS project maintainers, and more broadly improve the security of the JS ecosystem of contributors and end users. To shift the burden of securing and maintaining infrastructure support for OpenJS projects, the project will create a single scalable build, test and deployment infrastructure solution to deploy across the OpenJS project portfolio.
OpenJS will also hire a Security Engineering Champion who will supplement and build from the Node.js and jQuery security working group initiatives to scale across the most critical projects in the OpenJS project portfolio. The program would advance security skills and processes among the contributor and implementer communities to strengthen the JavaScript ecosystem broadly, with the advantage of being driven by a vendor neutral organization.
In detail, the following milestones are planned:
1. Release Engineering Plan, Execution and Documentation
2. DevSecOps/CloudOps Plan, Execution and Documentation
3. Responsible Sunset Support
4. Inventory and assessment of security resources in most critical projects in OpenJS,
including Node.js and jQuery who both need supplemental support.
5. Security framework roadmap and execution for JavaScript
6. Support for secure releases and CVE management.
7. Improve and document security processes.
Abschnitt IV: Verfahren
- Der Auftrag fällt nicht in den Anwendungsbereich der Richtlinie
As a research and development service, the contract is excluded from the scope of application of public procurement law (cf. Section 116 (1) No. 2 Act against Restraints on Competition).
Abschnitt V: Auftragsvergabe/Konzessionsvergabe
Ort: San Francisco
NUTS-Code: US United States
Land: Vereinigte Staaten
Abschnitt VI: Weitere Angaben
Ort: Bonn
Land: Deutschland