Projects are OpenSSF Technical Initiatives that support the innovative delivery of security tooling and best practices to secure critical open source software.
The OpenSSF Technical Advisory Council is responsible for the oversight of the various Technical Initiatives (TI) and maintains a project lifecycle for hosted projects. Interested in hosting a project?
Gemara
A model for the categorical layers of activities related to automated governance.
Learn Moregittuf
Protect the contents of a Git repository from unauthorized or malicious changes.
Learn MoreOpenBao
Manage, store, and distribute sensitive data including secrets, certificates, and keys
Learn MoreOpenSSF Model Signing (OMS)
A library and CLI for signing and verification of ML models.
Learn MoreOSPS Baseline
Structured security requirements aligned with international frameworks, standards, and regulations.
Learn Moregittuf
Protect the contents of a Git repository from unauthorized or malicious changes.
Learn MoreGUAC
Directed, actionable insights into the security of your software supply chain.
Learn MoreGemara
A model for the categorical layers of activities related to automated governance.
Learn MoreOpenSSF Model Signing (OMS)
A library and CLI for signing and verification of ML models.
Learn More