SlideShare a Scribd company logo
Submit Search
Upload
Login
Signup
Navigating Open Source Risk
Report
Dawn Foster
Follow
Director of Open Source Community Strategy
Oct. 18, 2021
•
0 likes
•
143 views
1
of
25
Navigating Open Source Risk
Oct. 18, 2021
•
0 likes
•
143 views
Download Now
Download to read offline
Report
Software
All Things Open
Dawn Foster
Follow
Director of Open Source Community Strategy
Recommended
Navigating Open Source Risk
Dawn Foster
112 views
•
18 slides
Measuring Project Health at VMware
Dawn Foster
118 views
•
11 slides
Collaborative Leadership: Governance Beyond Company Affiliation
Dawn Foster
180 views
•
17 slides
Is this Open Source Project Healthy or Lifeless?
All Things Open
35 views
•
26 slides
Is this Open Source Project Healthy or Lifeless?
Dawn Foster
198 views
•
26 slides
Collaborative Leadership: Governance Beyond Company Affiliation
Dawn Foster
228 views
•
18 slides
More Related Content
Similar to Navigating Open Source Risk
Collaborative Leadership: Governance Beyond Company Affiliation
Dawn Foster
204 views
•
18 slides
stackconf 2022: How to Be a Good Corporate Citizen in Open Source
NETWAYS
5 views
•
25 slides
How to Be a Good Corporate Citizen in Open Source
Dawn Foster
14 views
•
25 slides
Open Source Collaboration and Companies: Finding the Right Balance
Dawn Foster
46 views
•
24 slides
CHAOSS Metrics Overview and Examples
Dawn Foster
8 views
•
22 slides
Be a Good Corporate Citizen in Kubernetes
Dawn Foster
8 views
•
17 slides
Similar to Navigating Open Source Risk
(20)
Collaborative Leadership: Governance Beyond Company Affiliation
Dawn Foster
•
204 views
stackconf 2022: How to Be a Good Corporate Citizen in Open Source
NETWAYS
•
5 views
How to Be a Good Corporate Citizen in Open Source
Dawn Foster
•
14 views
Open Source Collaboration and Companies: Finding the Right Balance
Dawn Foster
•
46 views
CHAOSS Metrics Overview and Examples
Dawn Foster
•
8 views
Be a Good Corporate Citizen in Kubernetes
Dawn Foster
•
8 views
Overcoming Imposter Syndrome to Become a Conference Speaker!
Dawn Foster
•
12 views
Be a Good Corporate Citizen in Kubernetes
Dawn Foster
•
215 views
GitHub API 101 with Python and Jupyter Notebooks
All Things Open
•
28 views
Picking Up the Pieces: How Campaigns Can Help Us Better Track Groups
Adam Pennington
•
62 views
Pat Gelsinger - Welcome
scoopnewsgroup
•
1.3K views
Shift Left for More Secure Apps with F5 NGINX
NGINX, Inc.
•
106 views
Becoming Secure By Design: Questions You Should Ask Your Software Vendors
SolarWinds
•
249 views
Rombit LSEC IoTSecurity IoTSBOM CyberSec Europe 2022
Ulrich Seldeslachts
•
63 views
Leveraging Standard Buildpacks to Migrate Not-So-Standard Apps
VMware Tanzu
•
223 views
IDC Report : Web Security
Kim Jensen
•
1.9K views
Application Modernization: Migrating mainframe apps to the cloud using Spring
VMware Tanzu
•
211 views
Application Modernization: Migrating Mainframe Apps to the Cloud Using Spring
VMware Tanzu
•
438 views
Building Kubernetes images at scale with Tanzu Build Service
VMware Tanzu
•
835 views
Optimizing Security Velocity in Your DevSecOps Pipeline at Scale
Denim Group
•
587 views
More from Dawn Foster
Collaboration in Linux Kernel Mailing Lists
Dawn Foster
177 views
•
20 slides
Building Community for your Company’s OSS Projects
Dawn Foster
167 views
•
19 slides
Building Community for your Company’s OSS Project
Dawn Foster
221 views
•
16 slides
How to be a terrible hiring manager
Dawn Foster
509 views
•
20 slides
A week in the Life of Kubernetes
Dawn Foster
309 views
•
32 slides
Open Source Collaboration and Companies: Finding the Right Balance
Dawn Foster
224 views
•
23 slides
More from Dawn Foster
(16)
Collaboration in Linux Kernel Mailing Lists
Dawn Foster
•
177 views
Building Community for your Company’s OSS Projects
Dawn Foster
•
167 views
Building Community for your Company’s OSS Project
Dawn Foster
•
221 views
How to be a terrible hiring manager
Dawn Foster
•
509 views
A week in the Life of Kubernetes
Dawn Foster
•
309 views
Open Source Collaboration and Companies: Finding the Right Balance
Dawn Foster
•
224 views
Strategies to Balance the Needs of the Company and the Community
Dawn Foster
•
287 views
Being a Good Corporate Citizen in Open Source
Dawn Foster
•
241 views
Open Source Collaboration and Companies: Finding the Right Balance
Dawn Foster
•
232 views
Building a Community Metrics Strategy FOSDEM 2019
Dawn Foster
•
384 views
Open Source Collaboration: Finding the right balance
Dawn Foster
•
446 views
Collaboration in Linux Kernel mailing lists
Dawn Foster
•
363 views
Collaboration in inux Kernel Mailing Lists 2018
Dawn Foster
•
415 views
Collaboration in Linux kernel Mailing Lists
Dawn Foster
•
527 views
Understanding Collaboration in Fluid Organizations, a Proximity Approach
Dawn Foster
•
513 views
Collaboration in Linux Kernel Mailing Lists
Dawn Foster
•
410 views
Recently uploaded
Travel Software
SharmiMehta
6 views
•
14 slides
LangChain + Docugami Webinar
Taqi Jaffri
62 views
•
18 slides
Salesforce @AXA.pdf
PatrickYANG48
8 views
•
13 slides
MicroK8s 1.28 - MicroCeph on MicroK8s.pdf
Konstantinos Tsakalozos
9 views
•
24 slides
Semantic Search_ NLP_ ML.pdf
PlamenaDzharadat
13 views
•
52 slides
The art of AI Art
Dennis Vroegop
13 views
•
58 slides
Recently uploaded
(20)
Travel Software
SharmiMehta
•
6 views
LangChain + Docugami Webinar
Taqi Jaffri
•
62 views
Salesforce @AXA.pdf
PatrickYANG48
•
8 views
MicroK8s 1.28 - MicroCeph on MicroK8s.pdf
Konstantinos Tsakalozos
•
9 views
Semantic Search_ NLP_ ML.pdf
PlamenaDzharadat
•
13 views
The art of AI Art
Dennis Vroegop
•
13 views
[DPE Summit] How Improving the Testing Experience Goes Beyond Quality: A Deve...
Roberto Pérez Alcolea
•
426 views
baklink.docx
AbdAsisHusainSalam
•
5 views
Alliance Expedition Battle
Silver Caprice
•
1.5K views
Dido_Grigorov_Zurich_2020.pdf
PlamenaDzharadat
•
11 views
Winter 24 Highlights.pdf
PatrickYANG48
•
5 views
What is Microsoft Power BI used for.pptx
JohnCommuserv
•
12 views
The Next Era of CRM.pdf
PatrickYANG48
•
8 views
Freight Management System
Freightoscope
•
7 views
Empowering Advanced Users: Extending OutSystems UI Framework with Openness an...
Bernardo Cardoso
•
39 views
KaseSync: Revolutionizing Support Experiences With Community-CRM Integration
Grazitti Interactive
•
6 views
DevOps and SF.pdf
PatrickYANG48
•
5 views
Why Should You Choose a Personal Trainer over Group Gym Classes?
Neighborhood Trainer
•
38 views
Tracking user activity logs using Loggastic #ApiPlatformCon
Paula Čučuk
•
24 views
Document WhatsApp Messaging
Geminate Consultancy Services
•
8 views
Navigating Open Source Risk
1.
©2021 VMware, Inc.
@geekygirldawn Navigating Open Source Project Risk All Things Open October 2021 Dr. Dawn M. Foster Director of OSS Community Strategy fosterd@vmware.com fastwonderblog.com Open Source at VMware @vmwopensource blogs.vmware.com/opensource
2.
@geekygirldawn ©2021 VMware, Inc. Why
should you care? Ownership and Governance Policies and Documentation Community Resources Final Thoughts 2 Agenda Photo by Marco Verch - CC BY 2.0
3.
©2021 VMware, Inc.
@geekygirldawn 3 whoami • Geek, traveler, reader • 20+ yr tech career focused on community & open source (Intel, Puppet, Scale Factory, …) • OpenUK Board, CHAOSS Board and Maintainer, TODO Group Steering • CNCF Contributor Strategy TAG • PhD from the University of Greenwich focus on Linux kernel collaboration Photos by Mom, Josh Bancroft, Don Park
4.
©2021 VMware, Inc.
@geekygirldawn Your business could be disrupted 4 Why do we care about risk? https://xkcd.com/2347/
5.
©2021 VMware, Inc.
@geekygirldawn Strategies should take OSS risk into account 5 Risk and Strategy
6.
©2020 VMware, Inc.
@geekygirldawn Ownership and Governance Photo by K-nekoTR - CC BY-NC-ND 2.0
7.
©2021 VMware, Inc.
@geekygirldawn 7 Business Risk Licensing Example Server Side Public License* (SSPL) *Not an Open Source Initiative (OSI) approved open source license!
8.
©2021 VMware, Inc.
@geekygirldawn 8 Business Risk Governance Examples Undermines the project leading to forks and other disruptions
9.
©2021 VMware, Inc.
@geekygirldawn Leadership, trademarks, and projects 9 Determining Neutrality for Foundations? Image by Thomas Hawk CC BY-NC 2.0
10.
©2021 VMware, Inc.
@geekygirldawn Lower risk: participate as equals 10 Neutral Foundations
11.
©2021 VMware, Inc.
@geekygirldawn Higher risk: single company in control 11 Company Originated Photo by Jan Fidler - CC BY 2.0
12.
©2020 VMware, Inc.
@geekygirldawn Lower risk: Processes for how people collaborate and make decisions 12 Governance is about People
13.
©2021 VMware, Inc.
@geekygirldawn Lower risk: documented neutral leadership by individuals 13 Leadership Image by the CNCF CC BY-NC 2.0
14.
©2021 VMware, Inc.
@geekygirldawn 14 Photo by Gael Varoquaux CC BY 2.0 Policies and Documentation
15.
©2021 VMware, Inc.
@geekygirldawn Lower risk: proactive security response and policies 15 Security Image by darwin Bell CC BY-NC 2.0
16.
©2021 VMware, Inc.
@geekygirldawn Licensing, code of conduct, contribution, and communication process 16 Minimum Documentation Photo by Ginny - CC BY-SA 2.0
17.
©2020 VMware, Inc.
@geekygirldawn Community Image by the CNCF CC BY-NC 2.0
18.
©2021 VMware, Inc.
@geekygirldawn Lower risk: helpful, kind, respectful, and welcoming 18 Awesome Community Kubernetes CNCF CC BY 4.0
19.
©2020 VMware, Inc.
@geekygirldawn Inclusive projects are lower risk 19 Diversity, Equity, and Inclusion Photo by David Jakes - CC BY 2.0 https://chaoss.community/metrics
20.
©2021 VMware, Inc.
@geekygirldawn Lower risk: keeps up with contributions 20 Responsiveness Image by Joe Penniston CC BY-NC-ND 2.0
21.
©2021 VMware, Inc.
@geekygirldawn Lower risk: active contributors and organizational diversity 21 Contributor Risk Image by the CNCF CC BY-NC 2.0
22.
©2021 VMware, Inc.
@geekygirldawn Lower Risk: many adopters / end users 22 Adopters Image by the CNCF CC BY-NC 2.0
23.
@geekygirldawn ©2020 VMware, Inc.
23 Resources Linux Foundation’s TODO Group https://todogroup.org/guides/ CNCF Contributor Strategy TAG Docs https://contribute.cncf.io/maintainers/ The Open Source Way Guidebook https://github.com/theopensourceway/guidebook/ Photo by Vicente - CC BY-NC-ND 2.0
24.
©2021 VMware, Inc.
@geekygirldawn Make informed and strategic decisions about how much risk to accept and plan to monitor / mitigate those risks. 24 Final Thoughts on Risk Photo by Mohanraj Sivanandam - CC BY 2.0
25.
©2021 VMware, Inc.
@geekygirldawn Dr. Dawn M. Foster fosterd@vmware.com fastwonderblog.com Open Source at VMware blogs.vmware.com/opensource @vmwopensource 25 Thank You! Photo by Thangaraj Kumaravel - CC BY-NC-ND 2.0