Skip to content
Change the repository type filter

All

    Repositories list

    • A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerability (OSV) format.
      Go
      44324146Updated Aug 9, 2025Aug 9, 2025
    • The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for open source developers.
      JavaScript
      1749036212Updated Aug 8, 2025Aug 8, 2025
    • Website and API for OpenSSF Scorecard
      HTML
      29243411Updated Aug 8, 2025Aug 8, 2025
    • 273001Updated Aug 8, 2025Aug 8, 2025
    • Go
      28100415Updated Aug 8, 2025Aug 8, 2025
    • Official GitHub Action for OpenSSF Scorecard.
      Go
      76324264Updated Aug 7, 2025Aug 7, 2025
    • Open Source Vulnerability schema.
      Go
      982063316Updated Aug 7, 2025Aug 7, 2025
    • scorecard

      Public
      OpenSSF Scorecard - Security health metrics for Open Source
      Go
      5655k36024Updated Aug 6, 2025Aug 6, 2025
    • tac

      Public
      Technical Advisory Council
      721292613Updated Aug 6, 2025Aug 6, 2025
    • Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption
      Vue
      3799222Updated Aug 5, 2025Aug 5, 2025
    • Our mission is to catalyze sustainable improvements to critical open source software projects and ecosystems.
      Open Policy Agent
      59107525Updated Aug 4, 2025Aug 4, 2025
    • Tool for visualizing the Open SSF Scorecard Api data in a human friendly way
      TypeScript
      616111Updated Aug 4, 2025Aug 4, 2025
    • allstar

      Public
      GitHub App to set and enforce security policies
      Go
      1311.4k711Updated Aug 3, 2025Aug 3, 2025
    • The OpenSSF Vulnerability Disclosures Working Group seeks to help improve the overall security of the open source software ecosystem by helping mature and advocate well-managed vulnerability reporting and communication.
      43194312Updated Aug 1, 2025Aug 1, 2025
    • Secure Software Development Fundamentals courses (from the OpenSSF Best Practices WG)
      CSS
      52197342Updated Jul 30, 2025Jul 30, 2025
    • artwork

      Public
      OpenSSF Artwork
      10900Updated Jul 30, 2025Jul 30, 2025
    • OpenSSF Governance and Legal Docs
      177200Updated Jul 29, 2025Jul 29, 2025
    • Fuzz Introspector -- introspect, extend and optimise fuzzers
      Python
      734241021Updated Jul 21, 2025Jul 21, 2025
    • Machine-readable specification for the attestation of security-relevant data.
      CUE
      1460101Updated Jul 19, 2025Jul 19, 2025
    • Global CyberSecurity Skills Framework
      1001Updated Jul 18, 2025Jul 18, 2025
    • 1528121Updated Jul 10, 2025Jul 10, 2025
    • Working Group on Artificial Intelligence and Machine Learning (AI/ML) Security
      1510340Updated Jul 9, 2025Jul 9, 2025
    • OpenSSF Security Tooling Working Group
      52313180Updated Jul 6, 2025Jul 6, 2025
    • Global Cyber Policy Working Group
      157992Updated Jul 1, 2025Jul 1, 2025
    • Model Signing Specification
      1310Updated Jun 24, 2025Jun 24, 2025
    • glossary

      Public
      A reference for common terms when talking about OpenSSF and open source software security.
      JavaScript
      3423Updated Jun 23, 2025Jun 23, 2025
    • toolbelt

      Public
      52200Updated Jun 10, 2025Jun 10, 2025
    • Python
      3511Updated Jun 10, 2025Jun 10, 2025
    • wg-orbit

      Public
      ORBIT: Open Resources for Baselines, Interoperability, and Tooling
      41671Updated Jun 7, 2025Jun 7, 2025
    • education

      Public
      OpenSSF Education SIG
      151730Updated May 28, 2025May 28, 2025