

Workstreams
We structure our work across strategy, design, development, and content to ensure a seamless end-to-end
experience. Each workstream focuses on delivering clarity, quality, and continuous improvement
at every stage of the project.
experience. Each workstream focuses on delivering clarity, quality, and continuous improvement
at every stage of the project.
AIBOM Workstreams
Collaborative initiatives driving the development and adoption of AI transparency standards.
Overview
The OWASP AIBOM project is organized into 9 strategic workstreams, each focused on a critical aspect of AI transparency and security. These workstreams enable focused collaboration, expertise sharing, and measurable progress toward our mission.
Get involved! Join a workstream that matches your interests and expertise.
Active Workstreams
Requirements
Defining the Foundation
Establishing the baseline requirements and dependencies needed for successful AIBOM implementation.
Focus Areas:
- Infrastructure and technical requirements
- Organizational readiness assessments
- Skill and knowledge prerequisites
- Environmental and platform dependencies
Current Status: 🟢 Active
Foundational
Best Practices / Operational Guide
Building the Playbook
Creating comprehensive operational guidelines and best practices for AIBOM adoption and implementation.
Focus Areas:
- Step-by-step implementation guides
- Operational workflows and processes
- Integration patterns and strategies
- Common pitfalls and solutions
Current Status: 🟢 Active
Threat Intel
Strengthening AI Security
Identifying, analyzing, and sharing threat intelligence related to AI systems, vulnerabilities, and attack patterns to enhance AIBOM's security value.
Focus Areas:
- AI-specific threat modeling and attack patterns
- Vulnerability tracking and disclosure coordination
- Threat intelligence sharing and collaboration
Current Status: 🟢 Active
Sponsorship
Sustaining the Mission
Developing partnerships and securing resources to support project growth and sustainability.
Focus Areas:
- Partnership development
- Funding and resource allocation
- Sponsor engagement and recognition
- Value proposition articulation
Current Status: 🟢 Active
Integrity/Quality
Ensuring Excellence
Establishing quality standards and integrity measures for AIBOM data and processes.
Focus Areas:
- Data quality standards
- Validation and verification frameworks
- Trust and attestation mechanisms
- Audit and compliance procedures
Current Status: 🟢 Active
Join: #project-aibom-integrity
Policy
Shaping Governance
Engaging with regulatory bodies and developing policy recommendations for AIBOM adoption.
Focus Areas:
- Regulatory compliance mapping
- Policy recommendations and advocacy
- Legal and compliance frameworks
- Industry standards alignment
Current Status: 🟢 Active
Join: #project-aibom-policy
Content
Creating Knowledge
Producing educational materials, documentation, and resources for the AIBOM community.
Focus Areas:
- Documentation and guides
- Training materials and courses
- Case studies and success stories
- Blog posts and articles
Current Status: 🟢 Active
Join: #project-aibom-content
Alliances
(Collaboration)
Building Partnerships
Establishing and nurturing strategic partnerships with other organizations, projects, and communities.
Focus Areas:
- Cross-project collaboration
- Industry partnerships
- Academic and research partnerships
- Standards body engagement
Current Status: 🟢 Active
Join: #project-aibom-alliances
Engagement
(Promotion)
Amplifying Impact
Promoting AIBOM adoption through marketing, outreach, and community engagement activities.
Focus Areas:
- Marketing and communications
- Event participation and speaking
- Social media and digital presence
- Community growth initiatives
Current Status: 🟢 Active
How to Join a Workstream
Getting involved is easy! Follow these steps:
Step 1:
Join OWASP Slack
Connect with the community on OWASP Slack in the #project-aibom-community channel.
Step 2:
Introduce Yourself
Share your background, interests, and which workstream(s) you’d like to join.
Step 3:
Attend Meetings
Each workstream has regular meetings. Check the schedule in Slack or on our Events page.
Step 4:
Start Contributing
Jump into discussions, pick up tasks, and collaborate with your workstream team!
Workstream Coordination
Leadership Structure
Each workstream has:
- Workstream Lead — Coordinates activities and progress
- Core Contributors — Active members driving initiatives
- Community Members — All participants and supporters
Communication Channels
- Slack Channels — Day-to-day discussions and updates
- Regular Meetings — Virtual sessions for deep collaboration
- GitHub Issues — Task tracking and project management
- Mailing Lists — Important announcements
Progress Tracking
We track workstream progress through:
- Milestone achievements
- Quarterly reports
- Roadmap alignment
- Success metrics