<img height="1" width="1" style="display:none" src="https://www.facebook.com/tr?id=705633339897683&amp;ev=PageView&amp;noscript=1">

Featured

Recap: The importance of a sound open source software supply chain management strategy

On October 13th, Tidelift’s senior product marketing lead, Kanish Sharma, sat down with guest speaker Jim Mercer, IDC Research vice president, to ...
Caitlin Bixby
by Caitlin Bixby
on November 2, 2022

urllib3: how the maintainers keep the project secure and healthy (and why you should care) part 2

By Bill Nottingham on November 2, 2022
Have you ever wondered what the open source maintainers that your business relies on do to keep our software healthy and secure? Here’s the second in ...

Tidelift advisory | OpenSSL 3.0.x X.509 Buffer Overflow Vulnerabilities: what you need to know and do

By Jeremy Katz on November 1, 2022
In this advisory, we will address the core facts regarding the recently disclosed security vulnerability in the OpenSSL project, how important it is ...

Evaluating the RAIL license family

By Luis Villa on November 1, 2022
Evaluating the RAIL license family Machine learning (ML) is the hot topic in tech circles right now, and tech lawyers are no exception. Virtually ...

urllib3: how the maintainers keep the project secure and healthy (and why you should care) part 1

By Bill Nottingham on October 27, 2022
Have you ever wondered what the open source maintainers that your business relies on do to keep our software healthy and secure? Here’s the first in ...

Recap: AWS + Tidelift panel: Best practices for inclusive development

By Caitlin Bixby on October 26, 2022
On Tuesday, October 11th, in partnership with AWS, Tidelift’s foundations advocate, Josh Simmons, and Tidelift co-founder and head of engineering ...

Tidelift advisory | “Text4Shell” Apache Commons Text vulnerability: what you need to know and do

By Donald Fischer on October 19, 2022
In this advisory, we will address the core facts regarding the recently disclosed security vulnerability in the Apache Commons Text project, which ...

A maintainer-verified approach to minimizing false positives

By Kanish Sharma on October 19, 2022
Software composition analysis (SCA) tools have long been a popular way to identify security and licensing issues with open source packages. While ...

Washington, DC, and open—for maintainers

By Luis Villa on October 18, 2022
This blog post was originally published on our Tidelift community page. Some of you may have seen that open source has been in the news coming out of ...

Tidelift at SecureWorld NYC 2022

By Kristina Kaldenbach on October 12, 2022
We are excited to be sponsoring SecureWorld New York City on October 13! SecureWorld connects, informs, and develops leaders in cybersecurity through ...

Don't miss the latest from Tidelift

Filter by Topic