This page is auto-synced from REFERENCES.md
at the repository root on every Docusaurus build. Edit the root file,
not this copy — docs/scripts/sync-references.mjs overwrites this
file during npm run build / npm run start.
References
Every external spec, upstream repo, framework, or authoritative document OMA depends on or cites. Single source of truth — other files (README, NOTICE, docs/docs/compliance/*, CHANGELOG) should link here rather than re-listing URLs.
Contribution rule: before adding a new external reference anywhere
in the repo, add the entry to this file first. If the entry already
exists, link to its anchor (e.g. [SLSA v1.1](./REFERENCES.md#slsa-v11))
instead of re-pasting the raw URL.
Maintenance rule: when .lycheeignore flags a URL here as dead,
update both this file and the ignore list together. Removing the
ignore entry without updating the reference is how dead links come
back.
Contents
- Upstream code we reuse — Apache-2.0 / MIT / MIT-0 projects whose artefacts OMA consumes directly.
- Authoritative standards — specs that define the schema shape of OMA ontology fields.
- Frameworks and methodologies — governance and lifecycle references that shape OMA's decision trees.
- Harness engineering — CI, release, and supply-chain building blocks that keep the automation honest.
- AIDLC and AgenticOps references — upstream material for the AIDLC lifecycle and AgenticOps pattern.
- Tools used at runtime — binaries and
libraries the Easy Button expects on
$PATH. - Our own artefacts — canonical URLs for this repo's releases, pages, and docs.