OpenSSF Welcomes New Members and Progresses on Major Projects
In a significant development announced during the Open Source SecurityCon Europe, the Open Source Security Foundation (OpenSSF) has successfully welcomed three new members: Helvethink, Spectro Cloud, and Quantrexion. This expansion highlights the Foundation’s commitment to building a robust network dedicated to safeguarding open source software (OSS).
The new members will actively participate in various working groups, contributing to technical initiatives that promote transparency and collaboration within the open source community. According to Steve Fernandez, General Manager of OpenSSF, these organizations are integral to improving security protocols as they adapt to increasingly sophisticated threats. He emphasized that the collective efforts of these members play a crucial role in fostering a more secure future for OSS, designed with longevity in mind.
Key Milestones Achieved
Over the last quarter, OpenSSF has made significant strides in achieving its objective of fortifying open source security. Key accomplishments include:
1.
Partnership with Kusari: OpenSSF has partnered with Kusari to provide Kusari Inspector at no cost to projects under its umbrella. This powerful tool offers maintainers enhanced visibility into their software supply chains and helps identify security vulnerabilities during the pull request process.
2.
Recognition of SLSA: The Supply-chain Levels for Software Artifacts (SLSA) project has achieved Graduated status, which confirms its stability and growing adoption as an essential framework for ensuring supply chain integrity.
3.
Launch of Gemara Project: The release of the Gemara Project's inaugural white paper introduces a new framework for implementing security-as-code principles within the software development lifecycle.
4.
Formation of New Special Interest Groups: Two new groups centered on Model Lifecycle Provenance and GPU-Based Model Integrity have been established under the AI/ML Security Working Group. These groups aim to enhance the security of rapidly evolving AI/ML software.
5.
CEN / CENELEC Liaison Organization: OpenSSF has been approved as a liaison organization for cybersecurity, positioning it to influence global standards in the field.
6.
OpenSSF Ambassador Program: The Foundation has launched an ambassador program to further engage community members, with applications now open for the inaugural cohort.
7.
Enrollment Growth in Educational Programs: The Foundation’s commitment to education is demonstrated by over 7,300 learners currently enrolled in its free course on the EU Cyber Resilience Act, contributing to a total of more than 75,000 enrollments across various training programs to date.
Financial Backing Enhancing Security Initiatives
The recent growth of OpenSSF coincides with the announcement of $12.5 million in grant funding from leading AI providers. This financial support signifies a broad endorsement of sustainable AI security solutions aimed at empowering maintainers and ensuring ongoing security advancements.
Quotes from New Members:
- - Helvethink: Jose Goncalves, co-founder, stated: "Our participation in the OpenSSF enhances our capacity to influence standards and practices around cloud-native security."
- - Quantrexion: CEO Dionysis Karamitopoulos remarked: "Joining OpenSSF represents our commitment to promoting secure ecosystems that support long-term digital resilience."
- - Spectro Cloud: CTO Saad Malik expressed pride in supporting the mission of OpenSSF, reinforcing the community's standards that ensure the integrity of software deployed in various infrastructures.
Upcoming Events and Opportunities for Engagement
OpenSSF is hosting several events to facilitate community engagement, including:
- - Open Source Summit North America in Minneapolis, May 18-20, 2026
- - OpenSSF Community Day North America on May 21, 2026
- - OpenSSF Community Day Europe in Prague on October 6, 2026
- - Open Source Summit Europe from October 7-9, 2026
For those interested in contributing, OpenSSF encourages participation in ongoing projects and to join the newsletter for updates on future developments.
Conclusion
As it continues to grow, OpenSSF remains dedicated to its goal of securing open source software through collaborative efforts and innovative solutions. With the addition of new members and pivotal resources, the foundation is poised to make lasting impacts in the realm of open source security.