FOSSA logo
Platform
FOSSA Platform
The Modern Open Source Risk Management Platform
FOSSA Platform
Product
Vulnerability Management
License Compliance
Solutions
SBOM Management
Continuous Compliance
Due Diligence
Shift Code Security Left
Generative AI Risk Management
Resources
Getting Started with FOSSA
Documentation
Blog
Resource Library
Events
tl;drLegal
Company
About FOSSA
Customers
Careers
Partners
Press
Contact Us
For Developers
Pricing
Log In
|
Start for Free
Schedule Demo
Log In
|
Sign Up
|
  • Vulnerability Management
  • License Compliance
  • Open Source in the News
  • Software Composition Analysis
  • Developers
FOSSA Editorial Team

FOSSA Editorial Team

FOSSA's Editorial Team creates content on the wonderful world of open source software.

86 posts •
SCA vs. SAST: Comparing Security Tools
Software Composition Analysis

SCA vs. SAST: Comparing Security Tools

SCA and SAST both support security use cases, but there there are some significant differences between the tools.

  • FOSSA Editorial Team
    FOSSA Editorial Team
4 min read
FOSSA Product Updates: August 2023
Inside FOSSA

FOSSA Product Updates: August 2023

Get an overview of additions and improvements to the FOSSA platform, including Jira enhancements and auto-ignore rules.

  • FOSSA Editorial Team
    FOSSA Editorial Team
3 min read
An Early Look at SPDX 3.0
Software Composition Analysis

An Early Look at SPDX 3.0

See what to expect with the upcoming release of SPDX v3.0, such as the introduction of use case-specific profiles and increased flexibility.

  • FOSSA Editorial Team
    FOSSA Editorial Team
6 min read
The FOSSA Podcast: Product Management from Startup to Enterprise
Inside FOSSA

The FOSSA Podcast: Product Management from Startup to Enterprise

The FOSSA Podcast covers engineering-product team collaboration (and friction), product management tools, when to hire your first PM, and more.

  • FOSSA Editorial Team
    FOSSA Editorial Team
9 min read
Generative AI and Software Development: Copyright Law and License Compliance
Open Source in the News

Generative AI and Software Development: Copyright Law and License Compliance

See important copyright law and open source license compliance considerations when using generative AI in software development.

  • FOSSA Editorial Team
    FOSSA Editorial Team
6 min read
The FOSSA Podcast: Managing Engineering Projects
Developer Perspectives

The FOSSA Podcast: Managing Engineering Projects

This episode of The FOSSA Podcast discusses managing engineering projects, including scaling teams, measuring success, and delegating work.

  • FOSSA Editorial Team
    FOSSA Editorial Team
5 min read
Picking the Right FOSSA Deployment Model
Inside FOSSA

Picking the Right FOSSA Deployment Model

FOSSA customers can choose from a range of SaaS and on-premises deployment models. See which one is the best fit for your organization.

  • FOSSA Editorial Team
    FOSSA Editorial Team
4 min read
The FOSSA Podcast: SCA Purchasing and Implementation Trends
Software Composition Analysis

The FOSSA Podcast: SCA Purchasing and Implementation Trends

Episode 4 of The FOSSA Podcast discusses how organizations are evaluating SCA tools along with important factors in a successful implementation.

  • FOSSA Editorial Team
    FOSSA Editorial Team
5 min read
A Framework for Evaluating SBOM Tools
Software Composition Analysis

A Framework for Evaluating SBOM Tools

Customizability, ease of use, and support for CycloneDX and SPDX are among the most important features of a best-in-class SBOM tool.

  • FOSSA Editorial Team
    FOSSA Editorial Team
7 min read
Photo by Rineshkumar Ghirao on Unsplash
Inside FOSSA

The FOSSA Podcast: Structuring and Growing a Customer Success Team

This episode of The FOSSA Podcast offers guidance on structuring customer success teams and building a company-wide customer-success mindset.

  • FOSSA Editorial Team
    FOSSA Editorial Team
5 min read
Containers and Open Source License Compliance
Open Source License Compliance

Containers and Open Source License Compliance

There are many open source components in the container ecosystem, which means container users must be mindful of license compliance obligations.

  • FOSSA Editorial Team
    FOSSA Editorial Team
9 min read
Start-up tech company | Photo via Israel Andrade
Inside FOSSA

The FOSSA Podcast: Early-Stage Technology Decisions and Regrets

The second episode of The FOSSA Podcast covers early-stage start-up technology choices, including picking programming languages and databases.

  • FOSSA Editorial Team
    FOSSA Editorial Team
7 min read
2023 Open Source Management Trends, Predictions, and Observations
Open Source in the News

2023 Open Source Management Trends, Predictions, and Observations

In 2023, we expect organizations to prioritize using SBOM data, automating open source license compliance, and maintaining visibility into software composition.

  • FOSSA Editorial Team
    FOSSA Editorial Team
5 min read
The FOSSA Podcast: Adopting Haskell into an Existing Codebase

The FOSSA Podcast: Adopting Haskell into an Existing Codebase

Episode One of the FOSSA Podcast covers our team adopted Haskell, characteristics of the language, and pros and cons for teams considering it.

  • FOSSA Editorial Team
    FOSSA Editorial Team
9 min read
How to Use 1Password to Authenticate the FOSSA CLI
Inside FOSSA

How to Use 1Password to Authenticate the FOSSA CLI

1Password has released a shell plugin that will enable FOSSA users to authenticate with a simple fingerprint scan. Here's how to use it.

  • FOSSA Editorial Team
    FOSSA Editorial Team
4 min read
How Applause Makes Open Source Management Work for Developers
Software Composition Analysis

How Applause Makes Open Source Management Work for Developers

See how Applause has built developer-friendly open source license compliance and security programs with a significant assist from FOSSA.

  • FOSSA Editorial Team
    FOSSA Editorial Team
5 min read
OpenSSL Vulnerability 2022: Details and Fixes
Open Source Vulnerability Management

OpenSSL Vulnerability 2022: Details and Fixes

Two new high-severity vulnerabilities impacting OpenSSL have been disclosed. Here's what we know about the issues and how to address them.

  • FOSSA Editorial Team
    FOSSA Editorial Team
3 min read
CVE-2022-42889 Text4Shell Vulnerability: Impact and Fixes
Open Source in the News

CVE-2022-42889 Text4Shell Vulnerability: Impact and Fixes

See important details on the Text4Shell vulnerability, including affected versions, how it compares to Log4Shell, and how to identify and remediate it.

  • FOSSA Editorial Team
    FOSSA Editorial Team
3 min read
Open Source Licenses 101: Microsoft Public License (Ms-PL)
Open Source License Compliance

Open Source Licenses 101: Microsoft Public License (Ms-PL)

Get an overview of the Microsoft Public License (Ms-PL), including key provisions and how it compares to the Microsoft Reciprocal License (Ms-RL).

  • FOSSA Editorial Team
    FOSSA Editorial Team
4 min read
Analyzing the Securing Open Source Software Act
Open Source in the News

Analyzing the Securing Open Source Software Act

A new piece of proposed legislation would direct the U.S. federal government to create a framework for assessing security risks in open source software.

  • FOSSA Editorial Team
    FOSSA Editorial Team
4 min read
U.S. Government Memo Requires Self-Attestation to Secure Development Practices
Open Source Vulnerability Management

U.S. Government Memo Requires Self-Attestation to Secure Development Practices

U.S. government agencies must now require software suppliers to self-attest that they have adhered to NIST Guidance for secure software development.

  • FOSSA Editorial Team
    FOSSA Editorial Team
5 min read
Q and A: Heather Meeker on Hot Topics in OSS License Compliance
Open Source License Compliance

Q and A: Heather Meeker on Hot Topics in OSS License Compliance

IP attorney Heather Meeker tackles several hot topics in OSS license compliance, including SBOMs, the AGPL, triggers for distribution, and more.

  • FOSSA Editorial Team
    FOSSA Editorial Team
10 min read
FOSSA Earns Great Place To Work Certification
Inside FOSSA

FOSSA Earns Great Place To Work Certification

FOSSA has earned the Great Place to Work Certification, which reflects our strong company culture and workplace environment.

  • FOSSA Editorial Team
    FOSSA Editorial Team
2 min read
Customer Q&A: Collibra's Journey to Scaling OSS License Compliance
Open Source License Compliance

Customer Q&A: Collibra's Journey to Scaling OSS License Compliance

Amanda Weare, Collibra’s VP and Deputy General Counsel, discusses her experience managing Collibra's open source license compliance program.

  • FOSSA Editorial Team
    FOSSA Editorial Team
6 min read
How to Implement the CSRB’s Log4j Security Recommendations
Open Source Vulnerability Management

How to Implement the CSRB’s Log4j Security Recommendations

See guidance for implementing the security recommendations in the CSRB's recent report on the Log4j vulnerability.

  • FOSSA Editorial Team
    FOSSA Editorial Team
7 min read
  • For the Love of Open Source © 2024 FOSSA, Inc.
  • Privacy Policy
  • Terms & Conditions