The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit Europe 2025 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.
This schedule is automatically displayed in Central European Summer Time, CEST (UTC +2). To see the schedule in your preferred timezone, please select from the drop-down menu to the right.
IMPORTANT NOTE: Timing of sessions and room locations are subject to change.
Sign up or log in to add sessions to your schedule and sync them to your phone or calendar.
Open Source Software (OSS) intake is ever growing. An international Telco recently reported a surge from 30 to over 60,000 unique OSS components annually. However, this rapid adoption also introduces risks. The quality and security of OSS depend heavily on the maintenance efforts and health of its community.
In this talk, we show how organizations can systematically monitor the health of their OSS dependencies. This involves assessing the long-term viability and quality of OSS projects, akin to a medical check-up. Our study, detailed in the OSS Metrics chapter of the TODO group's OSPO book, identified 21 key health aspects through literature review and expert interviews. These aspects help organizations evaluate OSS projects based on factors like community productivity, stability, and governance.
Implementing health assessments requires a tailored approach, as demonstrated in our case study with a major automotive manufacturer. We present a semi-automated process for intake-stage inspections and automated monitoring for deployed components. Continuous training and feedback sessions are essential for integrating health assessments into standard practices.