Because our team has grown, we've been able to talk more about our mission. STF has been on stage at FOSS-Backstage, UN OICT's OPSOs for Good, @publicspaces Conference, Chaos Communication Camp, Bitkom Open Source Forum, @linuxfoundation's Open Source Summit EU, Internet Governance Forum, and other events. 11/
The STF team is also growing: there are 10 of us now with very diverse (work) experiences. We are united by the goal of promoting security, innovation, and competitiveness and creating a stable digital foundation for participation and democracy. 10/
The STF is already seen as a model for similar ventures, and we want to continue to serve as a blueprint for others active in this area. There is a huge need, which has only become clearer with our experiences during our first year.
In our second year, we’ll continue working on building up STF as an effective and impactful institution, supporting the much-needed work on critical open source software. We’re drawing up other exciting plans and ideas, stay tuned! 13/
The Sovereign Tech Fund started a year ago as a unique and tailor-made tool for strengthening the open source ecosystem. This marked the launch of an important new endeavor: digital services in the public interest.
These strengthen digital sovereignty, innovation, and competitiveness through investment in foundational, critical software. The approach initially outlined in the STF feasibility study is working and will continue to be scaled up. https://sovereigntechfund.de/files/SovereignTechFund_Machbarkeitsstudie_de.pdf 12/
Documentation is critical for #FOSS projects, helping to ensure long-term viability & sustainability of technologies. Want to improve your project's docs to guide new users and potential contributors? Apply for up to €300k in our #ContributeBackChallenges for strengthening open source infrastructure: https://sovereigntechfund.de/en/challenges/
We’re glad to announce that the Sovereign Tech Fund is supporting independent security audits and developer tool enhancements as part of Drupal’s adoption of a new supply chain security model. Drupal is a globally utilized open source content management system.
“This is an important cultural shift in how governments invest in the long-term viability of OSS and digital public goods, and we hope to see more of this in the future.”
Reflecting on our investment in the @openjsf, @cosborne wrote a piece, which eloquently captures a lot of what the Sovereign Tech Fund is doing:
“While these are still early days, the STF can set a precedent and act as a model for other governments in Europe and elsewhere, which also seek to support the sustainability of open source digital infrastructure that powers and benefits diverse stakeholders across sectors and countries…" https://linuxfoundation.eu/newsroom/stf-openjs
We're thrilled to announce the nine FOSS teams selected for the STF #ContributeBackChallenges! We received 70 applications from 20 countries, proposing 9.8m€ of work. Let's meet the projects who will receive a total of €1,363,600 for work in 3 areas.
Cabal is the build system and package manager for the Haskell programming language. Creating maintainable architecture for Cabal and streamlining its build system strengthens the Haskell language ecosystem.
conda-store is a FOSS tool for managing data science environments in collaborative teams. It provides flexible yet reproducible environments while enforcing best practices throughout an environment’s life cycle. Integrating conda-store into the conda ecosystem, adding multi-platform support, & improving maintenance & contribution workflows advance the long-term sustainability & accessibility of these essential resources for the broader Python community.
The first of the #ContributeBackChallenges is “Improving FOSS Developer Tooling” to contribute the development workflow for FOSS infrastructure projects.
Open Web Docs helps to maintain open web documentation and the tools that support this documentation. By documenting accurate compatibility data for web technologies, web developers can more easily create websites that are compatible with many different web browsers.
The next of the #ContributeBackChallenges is “Securing FOSS Software Production,” working on securing the entire production of FOSS, from source code to binary distribution.
Congratulations to the three teams in this section!
RuntimeTypeInspector.js is a tool that allows JavaScript projects of any kind to enable runtime type checking. Checking data types efficiently eliminates unseen runtime errors that can crash an application.
Apache Airflow is a top-level Apache project and a pivotal component in the Python ecosystem. It is the go-to solution for workflow orchestration, enabling data scientists and engineers to schedule and execute complex data pipelines. Enhancing its security model will provide a safe, state-of-the-art workflow orchestration tool.
Nix is an open source build system, configuration management system, and mechanism for deploying software, focused on reproducibility. With Nixpkgs and @nixos_org it supports the largest, most up-to-date free software repository in the world. Reinforcing the project’s security framework across the full software development life cycle provides safer defaults for users and eases industry adoption.
OpenPGP serves as a building block for secure personal communication, including in email and messaging software. This project provides OpenPGP documentation for application developers, for the upcoming “OpenPGP crypto-refresh” version of the standard.
The third of the #ContributeBackChallenges is "FOSS Infrastructure Documentation," to create comprehensive documentation for the most critical and widely-used FOSS infrastructure projects.
Congratulations to the two teams working on better documentation!
For the Rust ecosystem and the CycloneDX standard, the cyclonedx-rust-cargo project is emerging as the standard for creating Software Bill of Materials (SBOMs). This project enhances software production security in the Rust ecosystem by contributing to the production-readiness of this common Software Bill of Materials generator.