You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardexpand all lines: docs/annexes/diffs-from-previous-editions.md
+10-10
Original file line number
Diff line number
Diff line change
@@ -1,6 +1,6 @@
1
-
# Annex I Differences from previous editions (Informative)
1
+
# Annex A: Differences from previous editions (Informative)
2
2
3
-
# I.1 Differences between V3.0 and V2.3 <aname="I.1"></a>
3
+
# A.1 Differences between V3.0 and V2.3 <aname="A.1"></a>
4
4
5
5
## Structural Differences
6
6
@@ -797,7 +797,7 @@ The Tag/Value, YAML, RDF/XML and Spreadsheet formats are not supported.
797
797
798
798
Additional serialization formats are being considered for the SPDX 3.1 release.
799
799
800
-
# I.2 Differences between V2.3 and V2.2.2 <aname="I.2"></a>
800
+
# A.2 Differences between V2.3 and V2.2.2 <aname="A.2"></a>
801
801
802
802
V2.3 has added new fields to improve the ability to capture security related information and to improve interoperabiility with other SBOM formats.
803
803
@@ -821,7 +821,7 @@ Key changes include:
821
821
822
822
* Added Annex K ( How To Use SPDX in Different Scenarios ) to illustrate linking to external security information, and illustrate how the NTIA SBOM mandatory minimum elements map to SPDX fields.
823
823
824
-
# I.3 Differences between V2.2.2 and V2.2.1 <aname="I.3"></a>
824
+
# A.3 Differences between V2.2.2 and V2.2.1 <aname="A.3"></a>
825
825
826
826
V2.2.2 fixed formatting, grammatical and spelling issues found since ISO/IEC 5962:2021 SPDX v2.2.1 was published. No new fields were added.
827
827
@@ -837,7 +837,7 @@ Key changes include:
837
837
838
838
* It fixed annex lettering inconsistencies. It also moved CC-BY-3.0 to the end of the spec to keep annex letters more consistent in future versions. Here is the translation between lettering in V2.2.2 and the version that came before it:
@@ -848,11 +848,11 @@ Creative Commons Attribution License 3.0 Unported | Annex G | [omitted] | Ann
848
848
849
849
*_This edition featured inconsistent lettering._
850
850
851
-
# I.4 Differences between V2.2.1 and V2.2 <aname="I.4"></a>
851
+
# A.4 Differences between V2.2.1 and V2.2 <aname="A.4"></a>
852
852
853
853
There were no technical differences; V2.2.1 is V2.2 reformatted for submission to ISO via the PAS process. As a result, new clauses were added causing the previous clause-numbering sequence to change. Also, Annexes went from having Roman numbers to Latin letters. Here is the translation between numbering in V2.2.1 and the version that came before it:
* Miscellaneous bug fixes and non-breaking improvements as reported on the mailing list and reported as issues on the spdx-spec GitHub repository.
897
897
898
-
# I.6 Differences between V2.1 and V2.0 <aname="I.6"></a>
898
+
# A.6 Differences between V2.1 and V2.0 <aname="A.6"></a>
899
899
900
900
* Snippets have been added to allow a portion of a file to be identified as having different properties from the file it resides in. The use of snippets is completely optional and it is not mandatory for snippets to be identified. See section 5 Snippet Information for further details on the fields available to describe snippets.
901
901
@@ -910,7 +910,7 @@ more information.
910
910
911
911
* Miscellaneous bug fixes.
912
912
913
-
# I.7 Differences between V2.0 and V1.2 <aname="I.7"></a>
913
+
# A.7 Differences between V2.0 and V1.2 <aname="A.7"></a>
914
914
915
915
* Abstraction has been applied to the underlying model with the inclusion of SPDX elements. With SPDX 2.0, the concept of an SPDX element is introduced (see Appendix III). This includes SPDX documents, SPDX files, and SPDX packages, each of which gets associated with an SPDX identifier which is denoted by “SPDXRef-”.
0 commit comments