OpenSSF Scorecard Audit is Complete!

The Open Source Technology Improvement Fund is proud to share the results of our security audit of OpenSSF Scorecard. OpenSSF Scorecard is an open source automated testing resource to help projects continually assess security risks. With the help of ADA Logics and the OpenSSF, this project can continue to provide…

Continue ReadingOpenSSF Scorecard Audit is Complete!

GNU libmicrohttpd2 Audit Complete!

The Open Source Technology Improvement Fund is proud to share the results of our security audit of GNU libmicrohttpd2. GNU libmicrohttpd2 is an open source library that “embeds a HTTP or HTTPS daemon into host applications.”* With the help of ADA Logics and the Sovereign Tech Agency, this project has…

Continue ReadingGNU libmicrohttpd2 Audit Complete!

The Bridge to Improving Security: How OSTIF Helps Foundations

Over the duration of multiple programs with funders, we’ve heard firsthand their needs. Executives know they have the budget and desire to fund security, but need help with how to start generating outcomes. To create and sustain open source security programs requires dedicated administration work, experience with the open source…

Continue ReadingThe Bridge to Improving Security: How OSTIF Helps Foundations

EU-STF and OSTIF

The open source community has been abuzz for the past two years about European governance in open source software. From casual meetups to professional conferences, the implication of government funding and regulation of the free-use software sector has resulted in heavily debated discourse around the legal, financial, societal, and functional…

Continue ReadingEU-STF and OSTIF

OpenEXR Audit Complete!

The Open Source Technology Improvement Fund is proud to share the results of our security audit of OpenEXR,  a project at the Academy Software Foundation. OpenEXR is an open source specification and reference implementation of the EXR file format, which “accurately and efficiently represents high-dynamic-range scene-linear image data,” (https://openexr.com/en/latest/). With…

Continue ReadingOpenEXR Audit Complete!