Minimus Launches Open Source Program for Enhanced Security
In an exciting development for the world of open source software, Minimus has officially unveiled its Open Source Program, designed to provide crucial security tools for software maintainers. This initiative aims to bolster the integrity of software supply chains that underlie critical digital infrastructure.
Addressing Security Shortfalls
As technology advances and open source software becomes integral to our daily digital operations, the remnants of inadequate security tools remain. Many software maintainers often find themselves without the advanced security capabilities that larger enterprises routinely utilize. Recognizing this gap, Minimus has made it a priority to empower these maintainers with the tools they need.
From March 24, 2026, eligible projects will be able to apply for free access to Minimus’s secure container images, Software Bill of Materials (SBOM) generation and analysis, as well as threat intelligence tooling. By supplying these tools, Minimus aims to enhance the overall security landscape of open source software.
Program Features
Designed for projects using OSI-approved licenses, the program offers a range of key features:
- - Access to Hardened Images: Participants can integrate Minimus's hardened, compliant images into their build pipelines, which will help significantly reduce the attack surface for users.
- - Custom Image Creation: In addition to standard images, projects can develop their custom images, Helm charts, and receive automated SBOMs.
- - Real-Time Exploit Intelligence: This feature helps maintainers prioritize vulnerability management efforts, thus promoting quicker remediation of potential threats.
- - Updates According to SLAs: Image updates will be provided in line with Minimus's commercial Service Level Agreements, ensuring maintainers always have the latest safeguards in place.
Kat Cosgrove, Head of Developer Advocacy at Minimus, stressed the importance of this initiative, stating, "Open source maintainers are responsible for the software that runs the world’s infrastructure, but they’re rarely given the security tools to match that responsibility." Her sentiment underlines why the offering is not just an option but an essential service for critical infrastructure projects.
Impact on Open Source Community
This innovative program builds on the success that Minimus has achieved since its public launch at RSAC in April 2025. To date, the company has impressively expanded its revenue by 285% and grown its Image Gallery to include over 1,200 hardened container images. Furthermore, Minimus has rolled out significant new features like the Image Creator, allowing enterprises to build their own images tailored to their specific needs.
Supported by major players in the tech industry, including Aqua Security, AWS, Google Cloud, Orca Security, Snyk, and Wiz, Minimus's approach to container security is making waves. This has opened doors for developers and organizations, allowing them to adopt security practices that were once exclusive to established enterprises.
How to Get Involved
Open source maintainers interested in applying for the program can visit
minimus.io/open-source for more information and to submit their applications. The endeavor is set to not only level the security playing field but also cultivate a resilient ecosystem in the realm of open source development, ensuring that projects are not only innovative but also secure.
About Minimus
Founded in late 2022 by Ben Bernstein, Dima Stopel, and John Morello, Minimus is committed to revolutionizing cloud software security. By addressing vulnerabilities at their root, the company effectively prevents 97% of potential security issues before they can manifest. The Minimus approach combines a focus on security with ease of integration, providing organizations with reliable alternatives to traditional unprotected applications.
With the launch of this open-source initiative, Minimus is taking a decisive stance on security, enabling a future where open-source projects can thrive safely. The launch not only encapsulates Minimus’s vision of enhancing security but also represents a vital step toward empowering communities that rely on open source software to run their infrastructures.