Skip to main content

Register for Open Source SecurityCon

November 10, 2025 | Atlanta, Georgia

Register Now

The Open Source Security Foundation (OpenSSF) is a community of software developers, security engineers, and more who are working together to secure open source software for the greater public good.

Collaborate on capabilities and best practices that secure open source software.

Participate in the latest community conversations and engage with experts.

Take free courses on secure coding practices as part of our certificate program.

Explore our helpful security guides to help secure your project from the start.

Members

Meet Our Members

OpenSSF Hosted Events

OpenSSF events are a great opportunity to get involved with the OpenSSF community across the security and open source ecosystem. Join us and share ideas, progress, and collaborate on securing open source software.

Read the Latest Reports From OpenSSF

Practical Guide for Building Robust AI/ML Pipeline Security

Practical Guide for Building Robust AI/ML Pipeline Security

Secure Open Source Software Vision Brief 2025

Improving Risk Management Decisions with SBOM Data

2024 Annual Report cover

2024 Annual Report

Recent Blog Posts

BlogGuest BlogSBOMs in the Era of the CRA: Toward a Unified and Actionable Framework
October 22, 2025

SBOMs in the Era of the CRA: Toward a Unified and Actionable Framework

By Madalin Neag, Kate Stewart, and David A. Wheeler In our previous blog post, we explored how the Software Bill of Materials (SBOM) should not be a static artifact created…
BlogA New Course on Secure AI/ML-Driven Software Development
October 16, 2025

A New Course on Secure AI/ML-Driven Software Development

The Open Source Security Foundation (OpenSSF) has launched a new free course, Secure AI/ML-Driven Software Development (LFEL1012), authored by David A. Wheeler. As AI and machine learning become core to…
SigstoreBlogNewBlogGuest BlogAnnouncing the Sigstore Transparency Log Research Dataset
October 15, 2025

Announcing the Sigstore Transparency Log Research Dataset

We’re pleased to announce the creation of a new BigQuery public dataset, rekor. The rekor dataset is an easily-queryable mirror of the public good instance of Sigstore’s transparency log, Rekor.

Open source software is pervasive in data centers, consumer devices, and applications. Securing open source software requires fostering collaboration, establishing best practices, and developing innovative solutions.

Join the growing list of organizations supporting the advancement of securing open source technology and funding the development and adoption of OpenSSF initiatives.

Explore Membership in OpenSSF