Advertisement ยท 728 ร— 90

Posts by OpenJS Foundation

Preview
JSMONTHLY 205 - CITYJS CONFERENCE WARM UP EVENT | Guild Apr 15th 7:00PM: Join us on Wednesday, 15th April for our JS Monthly Meetup! Weโ€™re meeting in person at the Tessl office โ€” come along for a great evening of tech talks, networking, and community. Lo...

OpenJS + JavaScript Monthly London Meetup = ๐Ÿคฉ Join us for the "warm up" to CityJS London!

๐Ÿ“† Wednesday April 15
๐Ÿ“ Tessl Office, 210 Pentonville Rd, London N1 9JY
๐Ÿ“ Details: https://guild.host/events/jsmonthly-205-cityjs-bsmk1x

1 day ago 4 0 0 1
Preview
OpenJS World Keynote: Reaching Your Dreams In Tech and Science โ€“ Christina H. Koch, NASA Astronaut | OpenJS Foundation During the OpenJS Foundation global conference, OpenJS World, we heard from many inspiring leaders. In this keynote series, we will highlight the key points from the keynote videos.

Throwback Thursday: Christina Koch is taking off ๐Ÿš€ and will be the first woman to journey around the moon.

In 2020, she spoke at OpenJS World about what life is like in outer space as an international crew member of the ISS, and being a female in STEM.

Recap here: https://bit.ly/4smsjsQ

5 days ago 6 2 0 1

Thank you @jddalton.bsky.social for sharing your story ๐Ÿ™

1 week ago 1 0 0 0
Post image

Lodash gets 100M+ downloads a day. For years, it was maintained by one person: John-David Dalton

Then life happened. He stepped back.

Open source isnโ€™t just code. Itโ€™s people.

Read about our conversation about burnout with John-David here: https://bit.ly/3NWa92P

1 week ago 17 2 1 1
Preview
The Real Supply Chain Risk: Unsupported Dependencies, Overloaded Maintainers | OpenJS Foundation RSAC 2026 Brief from Robin Bender Ginn, Executive Director, OpenJS Foundation

"The biggest supply-chain risk isnโ€™t abandoned code. Itโ€™s unsupported ecosystems."

At RSAC 2026, @rginn206.bsky.social outlined a consistent pattern across ecosystems: when maintainer capacity does not scale with dependency usage, security risk increases.

Read more on the blog: bit.ly/3PzHKA0

1 week ago 5 1 0 1
Post image

We are thrilled to announce that
@rginn206.bsky.social 206 at @openjsf.org will be joining us for #CityJSLondon event - Come and see Robin speaking at our #WomenInTech panel and delivering interesting talks

Register now
london.cityjsconf.org

2 weeks ago 2 1 0 0

ECMAScript EXTRA-SPECIAL excitement ๐Ÿ˜‰

๐Ÿšจ๐Ÿšจ๐Ÿšจ IT'S ABOUT TIME! ๐Ÿšจ๐Ÿšจ๐Ÿšจ

Congrats to @ptomato.name on advancing Temporal to Stage 4 at @tc39.es today ๐ŸŽ‰

Temporal is the replacement for the JavaScript Date API ๐Ÿ‘

3 weeks ago 115 30 7 8
Advertisement
Preview
Node.js โ€” Evolving the Node.js Release Schedule Node.jsยฎ is a free, open-source, cross-platform JavaScript runtime environment that lets developers create servers, web apps, command line tools and scripts.

Node.js is moving to one major release per year starting with Node 27! ๐Ÿš€

โœ… Simpler: Every release becomes LTS.
โœ… Predictable: Version numbers now align with the year.
โœ… New: A 6-month Alpha channel for early testing.

https://bit.ly/4rnosLg

4 weeks ago 234 60 4 6

Yesterday was International Women's Day ๐Ÿ’™ We're SO grateful for our women contributors, community members and staff. THANK YOU!

4 weeks ago 2 0 0 0
Post image

Announcing the @nodejs.org LTS Upgrade and Modernization Program! ๐Ÿš€

We're helping enterprises move safely off end-of-life Node.js versions to reduce security risks with our partnerNodeSource.

Modern Node.js is safer Node.js. Details:
openjsf.org/blog/nodejs-...

1 month ago 26 9 0 0
Preview
Socket Joins the OpenJS Foundation - Socket Socket is proud to join the OpenJS Foundation as a Silver Member, deepening our commitment to the long-term health and security of the JavaScript ecos...

We're excited to announce that Socket is joining the @openjsf.org! Proud to support the #JavaScript ecosystem alongside so many great projects and contributors.

socket.dev/blog/socket-...

1 month ago 17 5 0 1
Post image

๐ŸŽ‰ Weโ€™re thrilled to welcome @socket.dev as our newest Silver member.

Socket is doing critical work to secure the JavaScript ecosystem by helping developers identify and prevent supply chain risks. We're excited to collaborate and make open source safer for everyone! ๐Ÿ›ก๏ธ๐Ÿ’ป

openjsf.org/blog/socket-...

1 month ago 23 6 0 1
Preview
Securing the AI software supply chain: Security results across 67 open source projects The GitHub Secure Open Source Fund helped 67 critical AIโ€‘stack projects accelerate fixes, strengthen ecosystems, and advance open source resilience.

GitHub is funding open source security work across dozens of projects, including OpenJS projects like @nodejs.org and Webpack.

Strong ecosystems are built through sustained investment in the software supply chain, and we appreciate @github.com's continued support of open source maintainers. ๐Ÿซถ

1 month ago 20 4 0 0
Video

WHAT EVEN IS A CVE!!! โ“

@ulisesgascon.com breaks it down and explains what a CVE is and how it helps in our latest short.

You can view all of the shorts in our series on our YouTube Channel too for more security insights ๐Ÿ‘€ youtube.com/@OpenJSFound...

1 month ago 5 2 0 0
Advertisement

๐Ÿซฃ

1 month ago 0 0 0 0

We're testing something, please ignore this ๐Ÿฅธ

[green-grass-grows]

1 month ago 1 0 2 0

Want to make an impact? Join the OpenJS Foundation. Fund the projects you rely on. Contribute engineer time where it matters.

1 month ago 2 1 0 0
Post image

AI is changing how software vulnerabilities are discovered and how quickly they are reported. For community-led open source projects, this shift is both promising and deeply challenging.

Check out our latest blog on how AI is stress-testing open source security: openjsf.org/blog/ai-is-s...

1 month ago 1 0 1 0
Preview
OpenJS Foundation Security Program: Annual Report 2025 | OpenJS Foundation The OpenJS Foundation, supported by generous funding from Alpha-Omega, made significant progress strengthening security for Node.js and the wider OpenJS project ecosystem in 2025.

Big year for security at OpenJS ๐Ÿ‘€

With support from Alpha Omega, we leveled up security across Node.js and the OpenJS ecosystem in 2025. Faster vulnerability response, automated releases, a new OpenJS CNA, stronger disclosure practices, and hands on support for over 10 projects.

hubs.la/Q040lXwL0

2 months ago 3 2 0 0

Big thanks to our Cross Project Council for getting it done ๐Ÿ’ช

2 months ago 0 0 0 0
Post image

Happy Friday from our fresh collaboration page. ๐Ÿ˜Ž

Want to get involved in our collaboration spaces and projects? Check out the page to see what groups to join and what meetings are happening.

If you care about JavaScript, you belong here. โœŒ๏ธ

openjsf.org/collaboration

2 months ago 3 2 1 1
Preview
Release v0.40.4 ยท nvm-sh/nvm Bug Fixes sanitize NVM_AUTH_HEADER in wget path nvm_has_colors: also check if stdout is a terminal nvm_strip_path: avoid gawk-specific RT variable for mawk compatibility nvm_get_default_packages: ...

nvm.sh users: please upgrade to github.com/nvm-sh/nvm/r... if you're using `wget` on your system, to fix a medium vulnerability (github.com/nvm-sh/nvm/s...).

2 months ago 6 4 1 0
Advertisement
jQuery UI 1.14.2 released | jQuery UI Blog jQuery: The Write Less, Do More, JavaScript Library

jQuery UI 1.14.2 is now available. ๐Ÿ’™ This release includes improvements to Tabs behavior and removes the mousewheel plugin dependency.

Read the full release notes here: blog.jqueryui.com/2026/01/jque...

2 months ago 1 0 0 0
Post image

Big news ๐Ÿ‘€ The OpenJS Foundation is bringing a dedicated summit to RenderATL 2026. ๐Ÿ”ฅ

Created by and for the JavaScript and Node.js community. Expect technical talks, real world lessons, and practical takeaways.

Check out the details + register for the conference: hubs.la/Q040sX130

2 months ago 11 2 2 1
Preview
Lodash Rolls Out Major Security Overhaul | OpenJS Foundation With the release of Lodash 4.17.23 and the publication of CVE-2025-13466, the project is making visible progress in strengthening its security posture.

Lodash v4.17.23 is live and features a whole new look for security ๐Ÿ˜Ž๐Ÿ”ฅ

Security fixes, stronger governance, and improved maintenance = safer and more reliable for your projects.

Check it out ๐Ÿ‘‡
hubs.la/Q03_NX2J0

2 months ago 15 4 1 2
Video

New Security Snapshot is live.

@ulisesgascon.com walks through how Express handles security reports, from first contact to shipped patch.

Clear steps, zero panic, just a solid process that keeps users safe. ๐Ÿ‘

2 months ago 3 1 0 0
Video

Oh hi. ๐Ÿ‘‹ We're back with the latest Security Snapshot that covers how to publish to npm safely and with ease. โœจ

@rafaelgss.dev breaks down why local publishing with 2FA gives you the safest setup right now.

3 months ago 8 5 0 0
Video

How did Node.js help you in 2025, and what security changes do you want next year?

Drop your thoughts below. Your feedback shapes the work ahead. ๐Ÿ›ฃ๏ธ

3 months ago 5 2 0 0
Post image

Open Visualization Collaborator Summit Recap ๐Ÿค“ ๐Ÿ’ป

Our OpenVis community gathered to share updates, experiments, and new ideas across the vis.gl ecosystem and related projects.

๐Ÿ“‘ Read here for a recap of the event: openjsf.org/blog/open-vi...

3 months ago 1 0 0 0
Video

How can you ACTUALLY get involved with OpenJS projects??

@ulisesgascon.com gives the download in our latest snapshot.

Join Slack, join our community meetings, or watch recordings.

Come say hi. ๐Ÿ‘‹

3 months ago 3 1 0 0