What are the most commonly used free and open source software (FOSS) packages? In this report, LF Research partnered with OpenSSF and the Laboratory for Innovation Science at Harvard to study the most common packages used at the application library level. With data from Software Composition Analysis partners FOSSA, Snyk, Sonatype, and Black Duck, the investigators captured detailed results of FOSS usage and key patterns of this usage that will help enhance the security of these packages.
Authors:
- Frank Nagle, Harvard Business School
- Kate Powell, Laboratory for Innovation Science at Harvard
- Richie Zitomer, Harvard Business School
- David A. Wheeler, The Linux Foundation