Kusari at KubeCon NA in Atlanta - Booth 1942

Open source is
a shared garden

And we feel a responsibility to contribute.

Core Principle #1

Building security for all developers

We build open source projects and contribute to them

We’ve dedicated our careers to building open source security tools because we believe in helping developers—from individual maintainers and contributors to massive enterprises. That’s why we’re so active in open source security solutions that work for the whole community.

Projects we actively maintain and contribute to

Graph for Understanding Artifact Composition (GUAC)

245K

cyberattacks, up 156% YoY

Aggregates software security metadata into a high fidelity graph database to locate, store, analyze, and correlate software artifact data.

Open Source Project Security (OSPS) Baseline

245K

cyberattacks, up 156% YoY

A minimum definition of security requirements for a project relative to its maturity level.

Allstar

245K

cyberattacks, up 156% YoY

GitHub App that continuously monitors for adherence to security best practices.

Open Source Security Foundation (OpenSSF) Scorecard

245K

cyberattacks, up 156% YoY

Assess open source projects for security risks through a series of automated checks.

Supply-chain Levels for Software Artifacts (SLSA)

245K

cyberattacks, up 156% YoY

A security framework and checklist of standards and controls to prevent tampering, improve integrity, and secure packages and infrastructure.

ClearlyDefined

245K

cyberattacks, up 156% YoY

A centralized and curated data store for open source software licenses.

Core Principle #2

Leading from the front

We contribute to the definitions, requirements, and government policies for what makes open source secure

Contributing at the project level is just the start. We extend our expertise to guiding open source standards for the entire community to ensure security is prioritized and accessible for all. That’s why we are so involved in the Open Source Security Foundation (OpenSSF) and many others that are hosted by the Linux Foundation.

Advisories we actively guide

OpenSSF Governing Board

245K

cyberattacks, up 156% YoY

Responsible for overall management of the OpenSSF and guides the organization in fulfilling its mission.

Open SSF Technical Advisory Council

245K

cyberattacks, up 156% YoY

Develops the overall technical vision and provides oversight of the OpenSSF technical communities.

Open SSF Supply Chain Integrity Working Group

245K

cyberattacks, up 156% YoY

Help individuals and organizations assess and improve the security of end-to-end supply chains for open source software.

CNCF Technical Advisory Group

245K

cyberattacks, up 156% YoY

Facilitates collaboration to exchange and produce knowledge and resources for building security in the cloud native ecosystem. Guides technical strategy, best practices, and standards across the cloud-native ecosystem.

Meet our contributors

CTO & Co-Founder

Mike Lieberman

2,500+ contributions

Governing Board & Technical Advisory Council - OpenSSF
TAG Security & Compliance Tech Lead - CNCF

CPO & Co-Founder

Parth Patel

5,800+ contributions

Co-Creator & Lead Maintainer - GUAC
Maintainer - in-toto Attestation, in-toto golang

Community Leader

Ben Cotton

2,200+ contributions

Maintainer - Open Source Project Security Baseline
OpenSSF Golden Egg Award Winner - 2025

Core Principle #3

Transparency in everything we do

We use and curate all of these open source tools and frameworks in our commercial solutions

From open source to our own Kusari product

Most security products are built in a black box. Not Kusari. We take the best of open source security, add our unique expertise, then package that back to you for the clearest picture of how to fix any vulnerabilities in your code.Now you can get the enterprise features you need, curated from the expertise and unique perspective of leaders in open source security.

Some open source technologies we use

See what we're made of

View Documentation
By clicking “Accept”, you agree to the storing of cookies on your device to enhance site navigation, analyze site usage, and assist in our marketing efforts. View our Privacy Policy for more information.