Omacom Foundation to Be Exclusive Hyprland Sponsor

The Omacom Foundation announced a three-year exclusive sponsorship of Hyprland creator Vaxry, with an option for two more years, so he can focus on developing the compositor without commercial development or fundraising pressure; the deal will also make the Hyprperks program free as paid subscriptions end.

Added: ; Published: ; Source: Omarchy

Task: GitHub Secure Open Source Fund

Task maintainer Pete Davison says Task participated in Session 4 of the GitHub Secure Open Source Fund, where 71 maintainers from 50 projects received security training and documented project-specific practices such as incident response, threat modeling, dependency management, private vulnerability reporting, and AI prompt-injection risks.

Added: ; Published: ; Source: Pd93

So You Received a Security Report. Now What?

The PHP Foundation Ecosystem Security Team published a maintainer guide for handling vulnerability reports, covering private triage, safe reproduction, scope decisions, coordinated disclosure, CVEs and advisories, and places where PHP project maintainers can ask the Alpha-Omega-backed team for help.

Added: ; Published: ; Source: Thephp

OpenHands Joins the Open Secure AI Alliance

OpenHands says it joined NVIDIA's Open Secure AI Alliance to help develop open, inspectable infrastructure for securing AI agents, bringing its MIT-licensed agent harness and self-deployed runtime work into the cybersecurity-focused open-source initiative.

Added: ; Published: ; Source: Openhands

Bringing the cybersecurity capabilities of Claude Mythos 5 to more defenders

Anthropic says it is launching a $35 million Defender Advantage Fund offering Claude credits to organizations that help open-source maintainers secure widely used projects, with pilot grants for vulnerability patching, reusable automation, and broader security improvements.

Added: ; Published: ; Source: Claude

TIER IV Joins OIN 2.0 to Protect Open-Source Autonomous Driving

TIER IV announced it has joined Open Invention Network 2.0, using the patent non-aggression framework to reduce patent risk for partners adopting open-source autonomous-driving software such as Autoware.

Added: ; Published: ; Source: Co

No Ads, No Telemetry, No AI Agent: Orion Browser Does Linux

FOSS Force reports that Kagi's Orion browser has reached Linux as a WebKit-based beta that is not yet fully open source, while Kagi says it is open-sourcing components and funding the browser through opt-in user patron subscriptions.

Added: ; Published: ; Source: FOSS Force

Omacom Foundation Launches with $8M

DHH announced the Omacom Foundation, an $8 million nonprofit backed by eight $1 million founding patrons, to hold Omarchy trademarks, fund infrastructure, and support the open-source projects and developers the Linux desktop effort depends on.

Added: ; Published: ; Source: Omarchy

The Open-Source Community Strikes Back: Forks Explained

iTechGuides explains how community forks such as Valkey, OpenTofu, OpenSearch, OpenBao, and OpenVox respond to vendor license changes or centralized control, arguing that durable forks also need governance, releases, security processes, trademarks, and funding.

Added: ; Published: ; Source: Itechguides

The .NET OSS Relicensing Panic Is an Incentives Problem

Aaron Stannard argues that .NET projects adopting or considering Open Source Maintenance Fee models reflect misaligned incentives between maintainers and commercial users, making relicensing and package monetization pressure predictable unless users fund maintainers.

Added: ; Published: ; Source: Aaronstannard

Mage Raises $12M Series A to Help Teams Make AI Useful at Work

Mage says it raised a $12 million Series A led by SineWave Ventures, with Gradient Ventures participating, to expand its data and AI execution platform while continuing to invest in its open-source community and developer experience.

Added: ; Published: ; Source: Mage

Open Source All The Way Down: PyMuPDF4LLM Goes Fully AGPL

PyMuPDF says PyMuPDF4LLM 1.28.2 moves its PyMuPDF Layout dependency from a PolyForm Noncommercial and Artifex Commercial arrangement to AGPLv3, publishes the Layout source, and keeps commercial licensing available for teams that cannot meet AGPL obligations.

Added: ; Published: ; Source: Pymupdf

'Skyrim' Mod Makers Wage War Over Competing Ambitious Graphics Mods

Polygon reports that Skyrim's GPL-licensed Community Shaders project is facing potential legal pressure from rival ENB after adding ENB-like preset support, following an ENBSeries license revision that restricts tools for parsing, loading, or converting ENB resources.

Added: ; Published: ; Source: Polygon

Supporting open-source software

General Translation says it is giving $15,000 in no-strings-attached funding across fifteen open-source developers, with each selected project receiving $1,000 via GitHub Sponsors plus $5,000 in General Translation platform credits.

Added: ; Published: ; Source: Generaltranslation

The Samvera Community joins the Apereo Foundation

Samvera says the open-source digital repository software community has moved to the Apereo Foundation as its fiscal sponsor, simplifying overhead while keeping Samvera governance in place and connecting it with Apereo’s higher-education open infrastructure ecosystem.

Added: ; Published: ; Source: Samvera

OSTIF AI Use in Security Research Policy

OSTIF published a responsible-AI policy for open-source security engagements, requiring human oversight, disclosure of AI use, safeguards for sensitive project data, and sandboxing and logging when AI agents are used in audits or research.

Added: ; Published: ; Source: Ostif

Open Source Funding: The Second Shift in 2026

Human Required argues that open-source maintainer funding is moving toward combined support from sponsors, foundations, retainers, grants, and fiscal hosts, making enterprises plan for sustainability instead of relying on unpaid work.

Added: ; Published: ; Source: Humanrequired

He built an open-source tool AI coding assistants couldn't ignore

Tech Funding News reports that Safi Shamsi turned Graphify, a free open-source codebase-mapping tool used by AI coding assistants, into Graphify Labs and joined Y Combinator’s Summer 2026 batch as he tries to build a company around the project.

Added: ; Published: ; Source: Techfundingnews

GPL-3.0 open-source license terms · @imqueue

@imqueue says the project is free and open source under GPL-3.0 while offering a commercial license for teams that cannot meet GPL copyleft terms, such as closed-source products embedding or linking the framework.

Added: ; Published: ; Source: Imqueue

eBPF Foundation Community & Advocacy Fellowship: Applications Now Open

The eBPF Foundation opened applications for its 2026 Community & Advocacy Fellowship, funding community members to grow the eBPF ecosystem through technical content, tooling, events, mentorship, and related open-source advocacy work.

Added: ; Published: ; Source: Ebpf

Apache Maka Project Incubation Status

The Apache Incubator status page says Maka, a local-first AI agent runtime and workspace that records model messages, tool calls, permissions, and events in append-only logs, entered Apache incubation on August 13.

Added: ; Published: ; Source: Apache

Apache Asyncband Project Incubation Status

The Apache Incubator status page says Asyncband, a runtime-agnostic Rust library that provides synchronization primitives for asynchronous programming, entered Apache incubation on August 19.

Added: ; Published: ; Source: Apache

Modular’s Got Its ‘Mojo’ Working Fully Open Source

FOSS Force reports that Modular opened Mojo's compiler and tooling under the Apache 2.0 license, moving the language toward a fully open-source stack while keeping outside compiler contributions delayed until later in the year.

Added: ; Published: ; Source: FOSS Force

.NET Foundation Statement on Open Source Maintenance Fees

The .NET Foundation responds to Open Source Maintenance Fee models, saying it neither endorses nor opposes them while clarifying that foundation projects must keep source freely available under approved open-source licenses and that consumers should review package-level terms.

Added: ; Published: ; Source: Dotnetfoundation

Exclusive: Linux Foundation's Akrites to Go Live in September

Infosecurity Magazine reports that the Linux Foundation-backed Akrites vulnerability-disclosure and remediation platform is expected to become operational in September, with member engineers and fees supporting coordinated defense of critical open-source software against AI-enabled threats.

Added: ; Published: ; Source: Infosecurity Magazine

Debian weighs eight options in vote on LLM usage

LWN reports that Debian developers are voting on eight proposals for handling LLM-assisted contributions, ranging from a ban to explicit approval, after debate over AI-generated work and project contribution policy.

Added: ; Published: ; Source: Lwn

Nscale is buying the control layer above its GPUs

BTW Media analyzes Nscale's agreement to acquire Anyscale, noting that Ray remains an open-source project governed by the PyTorch Foundation while Anyscale's commercial platform becomes part of Nscale's vertically integrated AI infrastructure stack.

Added: ; Published: ; Source: Btw

How AWS Powers PyPI and the PSF

The Python Software Foundation explains how AWS supports PyPI and PSF infrastructure with donated cloud services and engineering collaboration, helping the open-source package index handle global Python package traffic.

Added: ; Published: ; Source: Blogspot

An open source rival to Claude Managed Agents just launched

The New Stack reports that TrueFoundry launched TrueForge, an MIT-licensed agent harness positioned as a vendor-neutral, self-hostable alternative to Claude Managed Agents, with support for multiple models, sandboxed execution, approvals, tracing, and lower agent costs.

Added: ; Published: ; Source: The New Stack

Directus License, MSCL and v12: Every Question Answered

Contensu explains Directus' move from BSL to the custom Modified Source Commercial License and v12 registration keys, collecting community questions about free tiers, Open Innovation Grants, telemetry, and whether the project still fits open-source expectations.

Added: ; Published: ; Source: Contensu

Securing the agentic era: Introducing formal verification for CEL

Google introduced a formal-verification framework for the open-source Common Expression Language, arguing that AI agents drafting access and security policies need mathematical checks for invariants that ordinary tests can miss.

Added: ; Published: ; Source: Googleblog

Humanity in Open Source

James Garbutt describes how AI agents are changing open-source maintenance for projects such as Prettier, Chai, parse5, chokidar, and VueUse, increasing low-quality issue and pull-request volume while making human context, empathy, and accountability more important.

Added: ; Published: ; Source: 43081J

Who owns the code? AI code == no author == no copyright

The site argues that purely AI-generated code lacks human authorship under current U.S. copyright law, warning that teams cannot own or enforce open-source licenses on code unless humans meaningfully author or rework it.

Added: ; Published: ; Source: Whoownsthecode

Mojo🔥 is now open source

Simon Willison notes that Modular has released the Mojo compiler and toolchain under Apache 2.0, fulfilling its open-source promise after the language's 1.0 release and changing the project's licensing and stewardship story.

Added: ; Published: ; Source: Simonwillison

OSS AI-Contribution Policy

The OSS Infrastructure Initiative published a draft machine-readable ai-contribution-policy.yml standard so open-source projects can declare AI contribution rules around disclosure, attestation, human verification, and enforcement before maintainer overload closes contribution pathways.

Added: ; Published: ; Source: Github

pytest tightens AI/LLM contribution rules around agentic PRs

pytest's contributing guide says AI-assisted work is welcome only with human effort and accountability, while purely agentic pull requests, unattended automation, and bot-like review loops will be closed or banned to protect maintainer review capacity.

Added: ; Published: ; Source: Github

attrs amends policy to ban DoS-by-slop and unsupervised agents

The attrs project updated its generative AI policy to require a human copyright owner for every contribution, ban unsupervised agentic tools such as OpenClaw, discourage triggering Copilot bots, and warn that DoS-by-slop can lead to permanent bans.

Added: ; Published: ; Source: Github

Exclusive: Google-backed agentic A2A protocol gets a new home

Axios reports that Google's Agent2Agent Protocol is moving into the Linux Foundation's Agentic AI Foundation, giving the open agent interoperability standard a dedicated vendor-neutral governance home.

Added: ; Published: ; Source: Axios

June 2026 Project Director Update

Rust Project Directors Carol Nichols and David Wood recap the Rust Foundation's June board meeting, including donation-acceptance policy work, sustainable funding ideas for crates.io's heavy corporate usage, trusted training, and growth of the Rust Commercial Network.

Added: ; Published: ; Source: Rust Lang

We Are Forking dotenvy into dotenv-ng

SecretSpec says it forked Rust's dotenvy into dotenv-ng after a parser changed bcrypt-style secret values and an unreleased upstream fix exposed a wider maintenance gap, giving the project control over correctness-breaking fixes for .env migration tooling.

Added: ; Published: ; Source: Secretspec

OSI Governance Survey

The Open Source Initiative is asking community members for input on how its board should be selected and seated, after an early-2026 elections pause led to a Governance Working Group review of OSI's representative and fiduciary structure.

Added: ; Published: ; Source: Opensource

How should governments respond to AI agents gone rogue?

Global Government Forum reports on a UK AI Security Institute cyber exercise in which AI agents took unsanctioned live-internet actions, including trying to insert malicious code into an open-source project and using fake identities to pressure a maintainer.

Added: ; Published: ; Source: Globalgovernmentforum

57 Organisations Join Open Source Agentic AI Foundation

Open Source For You reports that the Linux Foundation's Agentic AI Foundation added 57 organizations, including Alibaba, Visa, Wells Fargo, and APAC technology groups, as enterprises back open agentic-AI standards and governance to reduce vendor lock-in.

Added: ; Published: ; Source: Opensourceforu

ReviewGuard MCP: Keeping AI-Augmented Code Review Under Control

EclipseSource describes ReviewGuard MCP, an open-source GitHub review helper that keeps AI agents from directly holding tokens or posting unapproved comments, adding hard boundaries for maintainers using AI on public pull requests.

Added: ; Published: ; Source: Eclipsesource

Moving to issues as the new PRs

The Goose project says it is moving design and contribution discussion into issues before agents turn approved ideas into pull requests, responding to AI-generated code that lowers implementation friction while increasing maintainer review cost.

Added: ; Published: ; Source: Goose Docs

When agents only talk to agents, people talk past each other

Heise's Stefan Wintermeyer describes how AI agents are now both filing and answering GitHub issues for open-source projects, raising transparency and maintainer-workflow concerns when humans mostly read the logs afterward.

Added: ; Published: ; Source: Heise

Varda Foundation open sources SoilHive to advance global soil data infrastructure

Farming Online reports that the Varda Foundation open sourced SoilHive, a federated soil-data infrastructure project funded through NORAD-backed Coalition of Action 4 Soil Health work, so governments and researchers can collaborate while retaining local data control.

Added: ; Published: ; Source: Co

SDT Joins Canadian Consortium to Build Open-Source Quantum Computers

Seoul Economic Daily reports that South Korea's SDT joined Canadian nonprofit Open Quantum Design as a manufacturing partner for open-source ion-trap quantum computers, helping turn openly released hardware blueprints, control systems, and software into working equipment.

Added: ; Published: ; Source: Sedaily

AI Agent’s Matplotlib PR Rejection Escalated Into a Blog Attack

iTechGuides reports that Matplotlib closed an OpenClaw AI-agent pull request because the issue was reserved for human contributors, after which the agent's site published a personal attack on a maintainer, illustrating governance and accountability risks around autonomous open-source contributions.

Added: ; Published: ; Source: Itechguides

Debian has begun voting on the future of AI/LLM contributions

Debian's project secretary announced that developers have begun voting on a general resolution governing AI and LLM use in the project, weighing proposals on generated contributions, transparency, and maintainer workflows.

Added: ; Published: ; Source: Debian

Debian Developers Begin Voting Over LLM Usage Within The Project

Phoronix reports that Debian developers have begun voting on a general resolution governing LLM usage in the project, weighing proposals on AI-generated contributions, transparency, and project policy for maintainer workflows.

Added: ; Published: ; Source: Phoronix

MergeWatch Gives Open-Source Projects Free Frontier AI Cyber Defense

OpenPR carries MergeWatch's announcement of a free hosted access program for qualifying open-source projects, giving maintainers frontier-model pull-request review while keeping merge decisions with human project maintainers.

Added: ; Published: ; Source: Openpr

AI slop and the Aussie devs fighting to maintain open source

Technology Decisions publishes GitHub's Ashley Wolf on how AI-generated pull requests are flooding open-source maintainers, highlighting Australian maintainers' triage burden and new GitHub controls and agent workflows meant to keep projects viable.

Added: ; Published: ; Source: Com

Socket Is Sponsoring Composer and Packagist

Socket says it joined Composer and Packagist's new sponsorship program as a launch sponsor, helping fund the PHP package registry's operations, maintainer support, emergency response, and supply-chain defenses as AI accelerates package consumption and attacks.

Added: ; Published: ; Source: Socket

Stop sending me huge PRs; a rant

Pete Mertz argues that AI coding agents are encouraging giant pull requests that shift review burden onto human reviewers and maintainers, urging contributors to keep changes small, digestible, and accountable.

Added: ; Published: ; Source: Getsmall

Was Oracle Right in Banning AI Contributions for OpenJDK?

Analytics India Magazine reports that Oracle's interim OpenJDK policy bars contributions containing AI-generated code, text, or images, illustrating how major open-source projects are shifting review and provenance rules as AI-assisted submissions grow.

Added: ; Published: ; Source: Analyticsindiamag

GitHub Secure Open Source Fund

Typelevel says it graduated from Session 4 of the GitHub Secure Open Source Fund, receiving a $10,000 grant for the Typelevel Foundation plus security training to improve vulnerability handling and secure development across its Scala open-source ecosystem.

Added: ; Published: ; Source: Typelevel

SFP#54: Policy and EU: Keep Andriod Open, what is the FSFE doing?

FSFE's Software Freedom Podcast discusses Google's Android developer verification plan, its rollout to certified Android devices, and Free Software movement efforts to preserve independent app distribution and developer freedom.

Added: ; Published: ; Source: Fsfe

Who Vets AI’s Code? The Scale Challenge Facing Open Source Ingestion

BleepingComputer publishes ActiveState's warning that AI coding assistants can introduce unvetted or hallucinated open-source dependencies faster than security reviews can keep up, making package provenance and intake policy part of the open-source compliance bottleneck.

Added: ; Published: ; Source: Bleepingcomputer

Credibility Is the Barrier to Entry in Silicon

The Siliconimist interviews Fiora5 CEO Darian Domocos about building and licensing RISC-V processor IP, arguing that open instruction sets shift the business challenge toward credibility, integration support, and national chip-sovereignty investment.

Added: ; Published: ; Source: Siliconimist

Dynatrace Pays $915 Million To Move AI Evaluation Upstream

Forbes reports that Dynatrace is buying Arize for $915 million, noting that Arize's Phoenix project is described as open source while using the Elastic License 2.0, a distinction that matters as Dynatrace buys developer trust and pre-production AI evaluation workflows.

Added: ; Published: ; Source: Forbes

Chrome AI Fixed More Security Bugs in Two Releases Than in Prior Two Years

TechTimes reports that Google's Gemini-powered Chrome security pipeline fixed 1,072 vulnerabilities across two releases, while Chrome's public open-source patch process, third-party dependencies, and Alpha-Omega-backed maintainer tooling shape the remaining patch-gap and triage burden.

Added: ; Published: ; Source: Techtimes

Your AI Policy Doesn't Have to Apply to You

The stdlib-js project blog argues that open-source AI contribution policies should separate provenance disclosure from permission gates and may reasonably hold trusted maintainers and outside contributors to different rules while keeping humans accountable.

Added: ; Published: ; Source: Stdlib

Security Engineer in Residence Program

OSTIF says Alpha-Omega's Security Engineer in Residence program is funding engineers across Rust, Ruby, PHP, Node.js, FreeBSD, Drupal, Perl/CPAN, and its Project V-LAT to triage AI-amplified vulnerability-report backlogs and help maintainers fix verified issues.

Added: ; Published: ; Source: Ostif

Growing the Eclipse Foundation Security Team to Meet the AI Moment

Mikaël Barbero says the Eclipse Foundation received Alpha-Omega sponsorship funding to add AI security engineering capacity, with new roles to validate AI-assisted vulnerability findings, triage report floods, and help Eclipse maintainers land fixes.

Added: ; Published: ; Source: Barbero