Skip to main content

Together, we’re securing the open source ecosystem.

OpenSSF is committed to collaboration and working both upstream and with existing communities to advance open source security for all.

Working Groups

Collaborate on the planning, design, and delivery of security tooling and best practices that secure critical open source projects.

Town Halls

Stay informed about the latest happenings in open source security and engage with experts in our community,

Training

Take free courses on secure coding practices as part of our Software Development Fundamentals Professional Certificate.

Recent Blogs

OpenSSF Criticality ScoreBlog
July 28, 2023

Understanding and Applying the OpenSSF Criticality Score in Open Source Projects

At Open Source Summit North America earlier this year as a 10th grader, Nathan Naveen, gave a talk about OpenSSF Criticality Score. Nathan takes a look at why understanding tools…
OpenSSF Vulnerability Disclosures Working GroupBlog
July 27, 2023

OpenSSF Vulnerability Disclosures Working Group Helps Guide and Automate Handling Risk

The OpenSSF Vulnerability Disclosures Working Group aims to improve open source security by developing and advocating well-managed vulnerability reporting and communication. We do so by documenting and supporting best vulnerability…
Manage how you protect your assets at scale with SBOMsBlog
July 21, 2023

Manage how you protect your assets at scale with SBOMs

While many in the industry realize the value of having a software bill of materials, creators still need to generate high-fidelity SBOMs, and software consumers must ingest and enforce actions…

Open source software is pervasive in data centers, consumer devices, and applications. Securing open source supply chains requires a combination of automated tooling, best practices, education, and collaboration.

Join the growing list of organizations supporting the advancement of securing open source technology and funding the development and adoption of OpenSSF initiatives.

Explore Membership