<img height="1" width="1" style="display:none" src="https://www.facebook.com/tr?id=705633339897683&amp;ev=PageView&amp;noscript=1">

Featured

New report from Atlantic Council finds paying maintainers can positively impact open source security

A new report just out last week from the Digital Forensic Research Lab (DFRLab) at the Atlantic Council found that open source projects with funding ...
Lauren Hanford
by Lauren Hanford
on April 23, 2024

Paying maintainers: the HOWTO

By Luis Villa on April 15, 2024
As part of the xz discussion, some asserted that “paying maintainers doesn’t work—we tried to give people money and they wouldn’t take it.” Suffice ...

Webinar recap: how to use Tidelift alongside your SCA tool

By Kristina Kaldenbach on November 7, 2023
One question we sometimes get when talking to customers: how does Tidelift fit in with software composition analysis (SCA) tools, like Black Duck, ...

Pay the maintainers: responsible maintainership (and incentive to continue)

By Bill Nottingham on November 17, 2022
At Tidelift, we are interested in helping our maintainers thrive. Sometimes that means paying them to maintain their work. Sometimes it means helping ...

Washington, DC, and open—for maintainers

By Luis Villa on October 18, 2022
This blog post was originally published on our Tidelift community page. Some of you may have seen that open source has been in the news coming out of ...

Paying it forward: How paying maintainers improves the software supply chain for everyone

By Bill Nottingham on September 22, 2022
In an earlier post on the Tidelift blog, Donald Fischer described how software alone can’t solve the current challenges of the open source software ...

Preparing for the wave of open source funding

By Seth Larson on September 1, 2022
Seth Larson is the lead maintainer of popular Python project urllib3. Seth has been a Tidelift maintainer partner since 2019. He originally wrote ...

$27m to improve open source health and security with Tidelift’s partnered maintainers

By Donald Fischer on May 24, 2022
Today we’re excited to announce that Tidelift has closed on $27 million of Series C funding, led by Dorilton Ventures with participation by Kaiser ...

Tidelift advisory | Spring Framework critical vulnerability: what you need to know and do

By Jeremy Katz on March 31, 2022
In this advisory, we will address the core facts regarding the recently disclosed security vulnerability in the Spring Framework, which has been ...

Log4Shell highlights the need to proactively cooperate with open source maintainers at scale

By Luis Villa on December 14, 2021
Over the weekend, there was much ado on tech Twitter about the Log4Shell vulnerability and the reality of unpaid maintainers being asked to shoulder ...

Don't miss the latest from Tidelift

Filter by Topic