Software Package Data Exchange (SPDX)
E1532513
UNEXPLORED
Software Package Data Exchange (SPDX) is an open standard for communicating software bill of materials (SBOM) and license information to improve transparency and compliance in software supply chains.
All labels observed (1)
| Label | Occurrences |
|---|---|
| Software Package Data Exchange (SPDX) canonical | 1 |
How this entity was disambiguated
This entity first appeared as the object of triple T22375650 — resolving that mention is where its identity was fixed. The disambiguator weighed these candidate entities and picked the highlighted one (or “None”, minting a new entity). This is how homonymy is resolved: the same surface form can point to different entities.
NED1
Entity disambiguation (via context triple)
gpt-5-mini-2025-08-07
Target entity: Software Package Data Exchange (SPDX) Context triple: [MPL 1.1, recognizedBy, Software Package Data Exchange (SPDX)]
-
A.
SPDX license list
The SPDX license list is a standardized catalog of commonly used open source software licenses with unique identifiers to support consistent license identification and compliance.
-
B.
OpenSSF
OpenSSF (Open Source Security Foundation) is an industry-wide collaborative initiative focused on improving the security of the open-source software ecosystem through best practices, tooling, and community efforts.
-
C.
Open Packaging Conventions
Open Packaging Conventions is a standardized container and packaging format, best known for underpinning modern Office document file types like .docx, .xlsx, and .pptx by organizing content as structured ZIP-based packages.
-
D.
Common Development and Distribution License
The Common Development and Distribution License (CDDL) is a weak copyleft, file-based open-source software license created by Sun Microsystems and approved by the Open Source Initiative.
-
E.
Python Packaging Authority
The Python Packaging Authority is a working group that oversees and develops key tools, standards, and infrastructure for packaging and distributing Python software.
- F. None of above. chosen
- G. Unsure - the case is ambiguous/there is not enough information to decide.
NED2
Entity disambiguation (via description)
gpt-5-mini-2025-08-07
Target entity: Software Package Data Exchange (SPDX) Target entity description: Software Package Data Exchange (SPDX) is an open standard for communicating software bill of materials (SBOM) and license information to improve transparency and compliance in software supply chains.
-
A.
SPDX license list
The SPDX license list is a standardized catalog of commonly used open source software licenses with unique identifiers to support consistent license identification and compliance.
-
B.
OpenSSF
OpenSSF (Open Source Security Foundation) is an industry-wide collaborative initiative focused on improving the security of the open-source software ecosystem through best practices, tooling, and community efforts.
-
C.
Open Packaging Conventions
Open Packaging Conventions is a standardized container and packaging format, best known for underpinning modern Office document file types like .docx, .xlsx, and .pptx by organizing content as structured ZIP-based packages.
-
D.
Common Development and Distribution License
The Common Development and Distribution License (CDDL) is a weak copyleft, file-based open-source software license created by Sun Microsystems and approved by the Open Source Initiative.
-
E.
Python Packaging Authority
The Python Packaging Authority is a working group that oversees and develops key tools, standards, and infrastructure for packaging and distributing Python software.
- F. None of above. chosen
Referenced by (1)
Full triples — surface form annotated when it differs from this entity's canonical label.