The Open Source Technology Improvement Fund is a corporate non-profit dedicated to securing open source apps that we all depend on. Securing software isn’t easy, and we know what it takes to succeed. By facilitating security audits and reviews, OSTIF makes it easy for projects to significantly improve security.

Better Security Through A Massive Community

 

Image

 

Through the Open Source Technology Improvement Fund, projects have been able to find and fix critical security bugs.

Image

100+
partner projects

Image

1000+
world class security experts

Image

13000+
hours of security review

Image

130+
severe bugs patched

Image

billions
protected

Support the OSTIF Mission

Open-source projects keep today’s Internet infrastructure afloat. They are critical for the operation of every webserver, every browser, and every banking platform. And they are cared for by a surprisingly small group of people with a limited amount of time. Without dedicated security experts, these projects often don’t get the attention they require.

We can do it with help from supporters like you.

Become a Sponsor

Image Feb 2026 Community Spotlight: Peter Hunt, Red Hat Peter has worked with OSTIF twice on both our audits of CRI-O. We have been so lucky as to see first hand Peter’s expertise, attention to detail, and love of… Read more »
Image 2025 Annual Report 2025 marked the 10th year of OSTIF. This year, we published 24 audits, worked on behalf of almost 50 projects, and partnered with 10 different funding bodies to create security… Read more »
Image EVerest Security Audit Complete! The Open Source Technology Improvement Fund is proud to share the results of our security audit of EVerest. EVerest is an open source project hosted by LF Energy, which functions… Read more »