OpenJS Foundation

@openjsf.org

A safe and modern home for the web OpenJS promotes the widespread adoption and continued development of key JavaScript technologies worldwide.

Node.js Interactive returns at RenderATL 2026. Join maintainers, contributors, and developers for two days of talks on Node.js performance, security, AI tooling, infrastructure, and the real world challenges of running JavaScript at scale. https://bit.ly/43aFSBs

Bild

Security isn't just about code, it's about sustainability. 🌐 The latest OpenJS Security Update dives into how the foundation is adapting to new challenges, from the pause of the Internet Bug Bounty program to managing AI-generated vulnerability reports. Read the Q1 Update: https://bit.ly/4cWocPA

Bild

"These sites must have our support, or we're all going to be in trouble developing, building, and running the programs our companies need to keep the lights on." Great article from ZDNet on the new Sustaining Package Registries Working Group news today. Read more: https://zd.net/4dsYORG

10 trillion downloads are crushing open-source repositories - here's what they're doing about it

Companies are treating these repositories like content delivery networks - now the Linux Foundation and colleagues are saying enough is enough. Here's the plan.

zdnet.com

The open source sustainability crisis is a challenge we must face together 🤝 OpenJS is proud to join fellow registry leaders in the new Sustaining Package Registries Working Group. Our goal: shared approaches to funding, governance, and long-term resilience. https://bit.ly/48KhxWh

Bild

Reminder: We're bringing a dedicated summit to RenderATL 2026. 🔥 Created by and for the JavaScript and Node.js community. Expect technical talks, real world lessons, and practical takeaways. Check out the details + register for the conference: https://bit.ly/4sgp4mF

Bild

Understanding JavaScript security is more important than ever 👀 Check out our free training course to better spot security flaws in JavaScript apps, design safer systems, and bring a security-first mindset to every stage of development. Details here: https://bit.ly/4vhXCay

Bild

Throwback Thursday: Christina Koch is taking off 🚀 and will be the first woman to journey around the moon. In 2020, she spoke at OpenJS World about what life is like in outer space as an international crew member of the ISS, and being a female in STEM. Recap here: https://bit.ly/4smsjsQ

OpenJS World Keynote: Reaching Your Dreams In Tech and Science – Christina H. Koch, NASA Astronaut | OpenJS Foundation

During the OpenJS Foundation global conference, OpenJS World, we heard from many inspiring leaders. In this keynote series, we will highlight the key points from the keynote videos.

openjsf.org

Lodash gets 100M+ downloads a day. For years, it was maintained by one person: John-David Dalton Then life happened. He stepped back. Open source isn’t just code. It’s people. Read about our conversation about burnout with John-David here: https://bit.ly/3NWa92P

Bild

"The biggest supply-chain risk isn’t abandoned code. It’s unsupported ecosystems." At RSAC 2026, @rginn206.bsky.social outlined a consistent pattern across ecosystems: when maintainer capacity does not scale with dependency usage, security risk increases. Read more on the blog: bit.ly/3PzHKA0

The Real Supply Chain Risk: Unsupported Dependencies, Overloaded Maintainers | OpenJS Foundation

RSAC 2026 Brief from Robin Bender Ginn, Executive Director, OpenJS Foundation

bit.ly

Node.js is moving to one major release per year starting with Node 27! 🚀 ✅ Simpler: Every release becomes LTS. ✅ Predictable: Version numbers now align with the year. ✅ New: A 6-month Alpha channel for early testing. https://bit.ly/4rnosLg

Node.js — Evolving the Node.js Release Schedule

Node.js® is a free, open-source, cross-platform JavaScript runtime environment that lets developers create servers, web apps, command line tools and scripts.

nodejs.org

GitHub is funding open source security work across dozens of projects, including OpenJS projects like @nodejs.org and Webpack. Strong ecosystems are built through sustained investment in the software supply chain, and we appreciate @github.com's continued support of open source maintainers. 🫶

Securing the AI software supply chain: Security results across 67 open source projects

The GitHub Secure Open Source Fund helped 67 critical AI‑stack projects accelerate fixes, strengthen ecosystems, and advance open source resilience.

github.blog