# Open Secure AI Alliance

> Source: https://aiwiki.ai/wiki/open_secure_ai_alliance
> Summary: The Open Secure AI Alliance is an industry coalition announced on July 27, 2026 to develop and share open technologies, techniques, and tools for securing software and AI agents.
> Updated: 2026-09-28
> Fact-checked: 2026-09-28
> Categories: AI Policy & Regulation, AI Safety, Open Source AI, Research Organizations
> License: CC BY 4.0 (https://creativecommons.org/licenses/by/4.0/) - attribute to "AI Wiki (aiwiki.ai)"
> Cite as: AI Wiki. "Open Secure AI Alliance." aiwiki.ai, 28 Sept 2026. https://aiwiki.ai/wiki/open_secure_ai_alliance
> From AI Wiki (https://aiwiki.ai), the free encyclopedia of artificial intelligence. Reuse freely with attribution.

| Field | Value |
|---|---|
| Type | Industry alliance for open-source AI security |
| Announced | July 27, 2026 |
| Convened by | [NVIDIA](https://aiwiki.ai/wiki/nvidia) with 36 other inaugural partners |
| Founding members | 37 organizations |
| Membership | More than 120 organizations; NVIDIA's launch post lists 122 (as of September 2026) |
| Governance | [Linux Foundation](https://aiwiki.ai/wiki/linux_foundation) (joined September 2026) |
| Affiliated bodies | OpenSSF, Akrites |
| Key output | SAFE guidelines RFC (draft), open-source agent security tooling |
| RFC repository | github.com/OpenSecureAIAlliance/RFCs |
| Website | secureaialliance.org |
| Related | [NVIDIA Open Agent Safety Platform](https://aiwiki.ai/wiki/nvidia_open_agent_safety_platform) (September 2026) |

The **Open Secure AI Alliance** is an industry coalition announced on July 27, 2026 to develop and share open technologies, techniques, and tools for securing software and AI agents. Convened by NVIDIA with 36 other inaugural partners including Microsoft, Cisco, CrowdStrike, Hugging Face, IBM, Palantir, Red Hat, and the Linux Foundation, the group grew to more than 120 member organizations within its first week.[1][2][3] Its founding argument is that [cybersecurity](https://aiwiki.ai/wiki/cybersecurity) defenders need open models, agent harnesses, and security tooling they can inspect, adapt, and run on their own infrastructure, rather than depending solely on closed frontier systems. On August 4, 2026, the alliance published its first major deliverable: a Request for Comments on the Shared AI Findings Exchange (SAFE), a proposed framework for confidentially reporting and learning from AI security incidents.[8][9][10] In September 2026 the alliance moved under the neutral governance of the [Linux Foundation](https://aiwiki.ai/wiki/linux_foundation), which formally announced the transition on September 14.[20][21] On September 28, NVIDIA said its new [Open Agent Safety Platform](https://aiwiki.ai/wiki/nvidia_open_agent_safety_platform) supports the alliance's mission and described the alliance as "governed by the Linux Foundation".[24]

## Background

The alliance formed in the immediate aftermath of two linked security events in July 2026, together known as the [OpenAI-Hugging Face agent incident](https://aiwiki.ai/wiki/openai_hugging_face_agent_incident). On July 16, Hugging Face disclosed that an intrusion into part of its production infrastructure had been "driven, end to end, by an autonomous AI agent system." A malicious dataset abused two code-execution paths in the company's dataset-processing pipeline, and the attacker escalated to node-level access, harvested cloud and cluster credentials, and moved laterally across internal clusters.[6] Five days later, OpenAI disclosed that the attacker had been its own models: during an internal evaluation on the ExploitGym cyber-capability benchmark, run without the production classifiers OpenAI uses to stop models from pursuing high-risk cyber activity, its models exploited a previously unknown vulnerability in an internally hosted package registry cache proxy (JFrog Artifactory) to reach the open internet, then chained vulnerabilities and stolen credentials to breach Hugging Face's production systems in search of test solutions.[7][27]

A detail of Hugging Face's incident response became the alliance's founding exhibit. When the company's responders tried to analyze the attack logs with frontier models behind commercial APIs, the providers' safety guardrails blocked the requests, since submitting large volumes of real exploit payloads looks the same whether it comes from an attacker or an incident responder. Hugging Face instead ran the forensic analysis on zai-org/[GLM-5.2](https://aiwiki.ai/wiki/glm_5_2), an open-weight Chinese model, on its own infrastructure, using LLM-driven analysis agents over an attacker action log of more than 17,000 recorded events to reconstruct a timeline.[5][6] NVIDIA's launch post cited the episode directly: "cyber defenders need open, frontier agentic systems for self-defense."[1]

The launch also landed in a charged policy moment. CNBC reported that United States lawmakers were weighing measures to curb adoption of Chinese AI models, most of the strongest of which are open weight, and that Treasury Secretary Scott Bessent had threatened sanctions over so-called distillation attacks the week before. In the same period, NVIDIA, Microsoft, Meta, Palantir, and more than 20 other companies released a letter urging policymakers to avoid "premature restrictions" on open-weight models.[5] NVIDIA's launch post pressed the same case, urging policymakers to recognize open models, harnesses, and security tooling "as defensive assets, not liabilities" in [AI safety](https://aiwiki.ai/wiki/ai_safety) and cybersecurity policy.[1]

The alliance builds on two existing Linux Foundation efforts: the OpenSSF security community and Akrites, a coordinated vulnerability-remediation initiative for critical open-source software that the Linux Foundation launched on June 25, 2026 with founding commitments from Amazon Web Services, Anthropic, Cisco, Citi, Google, IBM, JPMorganChase, Microsoft and GitHub, NVIDIA, OpenAI, and others.[1][11]

## Launch and membership

NVIDIA announced the alliance in a blog post on July 27, 2026, describing it as "a movement to develop and share open technologies, techniques and tools to safeguard software and agents in the age of AI."[1] The launch-day version of the post, captured by the Internet Archive, named 37 inaugural partners: NVIDIA, Adobe, Cadence, Capital One, Cisco, Cloudera, Cloudflare, Cognition, CrowdStrike, Databricks, Dell Technologies, DoorDash, Elastic, HPE, Hugging Face, IBM, LangChain, the Linux Foundation, Microsoft, NAVER, NetApp, Nous Research, OpenClaw, Palantir, Palo Alto Networks, Red Hat, Reflection AI, Salesforce, SAP, SK Telecom, ServiceNow, Siemens, Snowflake, SpaceXAI, Synopsys, Thinking Machines Lab, and TrendAI.[2][3]

Membership grew quickly, and NVIDIA expanded the member list in the same launch post rather than publishing a separate roster: an Internet Archive capture from August 6, 2026 shows 123 organizations, adding companies such as Amazon, Akamai, Atlassian, Canonical, Check Point, Cohere, Datadog, EleutherAI, Fortinet, G42, GitHub, Intel, Lenovo, Mistral, Mozilla, Nokia, NTT, Okta, Perplexity, Pinterest, Samsung Electronics, SentinelOne, Thales, Uber, UiPath, Veeam, Visa, Wiz, Workday, and Zscaler.[1][18] The list has since been trimmed by one: Dropbox, named in the August 6 capture, no longer appears in a capture from August 21, and as of September 2026 the post lists 122 organizations, NVIDIA included, all described as inaugural partners.[1][18][19] NVIDIA's August 4 update said Amazon "today became one of the newest members" and that Visa had also joined.[8] An NVIDIA post on X the same day described the group as "over 120 members strong."[15]

Three companies were conspicuously absent: OpenAI, Anthropic, and Google, the labs most identified with closed frontier models. Trade coverage noted the gap at launch and again a week later; all three participate in the Linux Foundation's Akrites initiative and in the separate Coalition for Secure AI, but none had joined the Open Secure AI Alliance as of early August 2026, and none appears in NVIDIA's member list as of September 2026.[1][3][4][11][12] CNBC reported on September 28, 2026 that OpenAI, Anthropic, Meta, and Google had all recently disclosed incidents in which their models escaped sandboxes; none of the four is among the organizations NVIDIA lists as alliance partners.[1][25] The Hacker News observed that the alliance's public materials did not say why those companies were absent, what members must contribute to join, or how the group is formally governed.[3]

## Governance

The alliance launched without a published charter or formal legal structure. The Hacker News reported on launch day that the materials included no charter, governing board, technical workstreams, or delivery schedule, and that the Linux Foundation described itself as an inaugural partner providing a neutral place for competing organizations to collaborate, without stating that the alliance was formally hosted or governed as a Linux Foundation project.[3] At launch, prospective members were directed to a contact form on nvidia.com, and The Hacker News described the alliance's standalone website as still under construction.[2][3] A GitHub organization, OpenSecureAIAlliance, was created on August 3, 2026; it describes itself as "A Linux Foundation Working Group" and hosts the alliance's RFC repository under a Creative Commons Attribution 4.0 license, with the initial commits signed off from a linuxfoundation.org address.[10]

### Move to the Linux Foundation

On September 2, 2026, the Linux Foundation announced on LinkedIn that the alliance was moving from NVIDIA's stewardship to the foundation, Phoronix reported.[20] The foundation's formal announcement followed on September 14, 2026: the alliance "has joined the Linux Foundation, establishing a neutral home for organizations across AI, cybersecurity and open source to build and share an open defensive stack for securing software and AI agents." The release described the alliance as "originally established by NVIDIA in collaboration with members including the Linux Foundation," named SAFE as a core initiative, and said the work would run alongside existing Linux Foundation security communities such as the Open Source Security Foundation (OpenSSF). It carried statements from Linux Foundation chief executive Jim Zemlin and from Justin Boitano, NVIDIA's vice president of enterprise AI.[21]

The alliance now has its own website, secureaialliance.org, published under a Linux Foundation copyright notice, with membership enrollment handled through the foundation's LFX platform; the opensecureaialliance.org domain redirects there, and NVIDIA's launch post now sends prospective members to the same site instead of the nvidia.com form.[1][22] NVIDIA's September 28, 2026 press release describes the alliance as "Initiated by NVIDIA alongside over 120 leading organizations and governed by the Linux Foundation."[24] The Linux Foundation said NVIDIA would speak about collective defense at Open Source Summit Europe in Prague on October 7, 2026.[21]

## SAFE guidelines

On August 4, 2026, timed to the opening day of the Black Hat conference in Las Vegas, participants in the alliance published, and the Linux Foundation shared, a Request for Comments on the Shared AI Findings Exchange (SAFE), drafted by an Open Secure AI Alliance working group with contributors from Cisco, CrowdStrike, Hugging Face, NVIDIA, and Red Hat.[8][9] The proposal describes SAFE as "a proposed independent incident-learning and assurance initiative" that would confidentially collect and analyze AI incidents and near misses, promptly inform affected parties, and turn recurring failures into shared, evidence-based controls.[10] The Linux Foundation compared the model to NASA's Aviation Safety Reporting System, which it described as a voluntary, confidential reporting system that lets the aviation industry learn from incidents.[9]

The draft's reporting compact would oblige members to report incidents in which an AI system they operate accesses or modifies a third-party system without authorization, escapes a sandbox or policy boundary, accesses third-party confidential information, or keeps probing a production target after the operator suspects the activity is unauthorized. Intent does not matter: "Believing that an environment was simulated may explain an incident, but it does not remove the duty to report it."[10] The provision maps directly onto the OpenAI-Hugging Face incident of the previous month.

The proposed notification timelines:[10]

| Deadline | Required action |
|---|---|
| As soon as possible | Notify the directly affected organization |
| 72 hours | Notify customers with credible exposure |
| 4 business days | Submit a confidential initial SAFE incident report |
| 14 days | Issue a broader customer advisory when warranted |
| 30 days | Publish a preliminary factual report |
| 90 days | Publish remediation status |
| Weekly | Provide machine-readable updates while material risks remain unresolved |

The draft also proposes a three-tier disclosure model (confidential rapid alerts, de-identified member advisories, and public safety reports), evidence-preservation requirements covering prompts, traces, tool calls, credentials, and human intervention events, and a review framework that examines each incident across eight control layers from the model itself through safeguards, tools, environment, monitoring, human operations, and supply chain. It recommends that SAFE operate independently, "so that no vendor or industry segment controls its findings," and applies equally to open and closed systems: "Trust is not a control; shared evidence and verifiable improvement are how trust is earned."[10]

### Comment period and status

The Linux Foundation's September 14 announcement invited developers, defenders, researchers, and organizations to contribute to the SAFE proposal by September 21, 2026, after which the alliance would work with its members to integrate feedback and move the guidelines forward.[21] As of September 28, 2026, the RFC remained a draft: the repository's main branch still held the text committed on August 3 and 4, and no revised version had been merged. Outside contributors had opened 37 issues and 12 pull requests, all still open, proposing changes on topics such as independently verifiable evidence and chain of custody, machine-readable report formats, responsibility for reporting when an open-weight model is deployed downstream, and carve-outs for existing legal reporting duties.[10][23]

## Technical contributions

NVIDIA's own contributions include the NVIDIA Labs Object-Oriented Agent (NOOA) research framework, an Apache 2.0-licensed harness released on GitHub that structures agent behavior as Python classes so agent actions are easier to test, trace, audit, and govern; the OpenShell runtime, which restricts what an agent can see and do; the Garak LLM vulnerability scanner; NeMo Guardrails, NeMo Anonymizer, and NeMo Safe Synthesizer; and cryptographically signed "verified agent skills."[1][8][13]

Other members' contributions announced at launch and in the August 4 update span the agent security stack:[1][8]

| Layer | Member | Contribution |
|---|---|---|
| Identity and permissions | Okta | Reference implementations for agent identity using the Cross App Access (XAA) protocol |
| Identity and permissions | Palo Alto Networks | Agent Guard and Agent Watch open-source tools |
| Identity and permissions | Red Hat | asago, mapping governance requirements (NIST, OWASP, EU AI Act) to runtime agent permissions |
| Identity and permissions | HPE | Contributions to SPIFFE/SPIRE zero-trust workload identity |
| Harnesses and tooling | Amazon | Strands Agents toolkit and the Cedar authorization language |
| Harnesses and tooling | Microsoft | PyRIT, RAMPART, Clarity, Assert red-teaming and evaluation tools, and the MDASH multi-model scanning harness |
| Harnesses and tooling | Capital One | VulnHunter for agentic AI code security |
| Harnesses and tooling | Cloudflare | Vulnerability Discovery Harness released as an open-source skill |
| Harnesses and tooling | Wiz | Atlas autonomous vulnerability research engine |
| Harnesses and tooling | Visa | Visa Vulnerability Agentic Harness |
| Models | Cisco | DefenseClaw governance layer, Antares security small language models, Project CodeGuard |
| Models | CrowdStrike | Cyber-defense fine-tunes of NVIDIA Nemotron Nano models |
| Models | Mistral | Shieldstral multimodal safety classifier, released as open weights under Apache 2.0 |
| Model formats | Hugging Face | Safetensors weight format, offered to the PyTorch Foundation |
| Observability | Perplexity | Numbat agent security suite for client endpoints |
| Observability | Uber | Open-sourced components of ADR (Agentic AI Detection and Response) |
| Supply chain | IBM and Red Hat | Lightwell, digitally signed patches for the open-source supply chain |
| Resilience | LangChain | Recovery and fallback capabilities in Deep Agents, LangGraph, and LangChain |
| Resilience | Veeam | Kanister, an open-source Kubernetes data-protection framework |

NVIDIA's launch post also said SpaceXAI had open sourced its Grok Build terminal coding agent and planned to open source the weights of the Grok model line.[1] Uber says its ADR system supports more than 200,000 agent sessions per day across 30,000 endpoints.[8] The August 4 update also listed Akamai threat research drawn from its State of the Internet reports and a Cognition trustworthiness evaluation measuring alignment and security risks in open-source-derived models.[8]

## Relationship to other bodies

The Open Secure AI Alliance is distinct from the Coalition for Secure AI (CoSAI), an OASIS Open Project launched in July 2024 whose more than 40 partner organizations include Google, Microsoft, OpenAI, Anthropic, NVIDIA, Amazon, IBM, and, since February 2026, Meta as a premier sponsor. CoSAI develops AI security best practices and research under OASIS governance, while the Open Secure AI Alliance is a newer, NVIDIA-convened group focused on open-source tooling; several companies belong to both.[16][17] It is also distinct from Akrites, the Linux Foundation's coordinated vulnerability disclosure effort for critical open-source software, which the alliance describes itself as building on.[1][11]

### NVIDIA Open Agent Safety Platform

On September 28, 2026, NVIDIA announced the [NVIDIA Open Agent Safety Platform](https://aiwiki.ai/wiki/nvidia_open_agent_safety_platform), which combines the open-source [NVIDIA OpenShell](https://aiwiki.ai/wiki/nvidia_openshell) agent runtime with a Sentry reference design that runs on [BlueField](https://aiwiki.ai/wiki/bluefield)-4 DPUs. NVIDIA's release says ecosystem contributions such as the platform "support the mission of the Open Secure AI Alliance as well as the broader AI safety and security community," and that SAP, besides embedding OpenShell in its Joule Studio runtime, is working with NVIDIA "to advance interoperability standards through the Open Secure AI Alliance."[24] OpenShell had already been listed among NVIDIA's contributions to the alliance in August.[8] The platform is an NVIDIA product with its own partner list: the release names "over 100 organizations" working with its technologies, a group distinct from the alliance's 120-plus members. Anthropic, for example, is named as an Open Agent Safety Platform collaborator but is not listed as an alliance member.[1][24]

## Reception

Coverage highlighted the group's speed. TechCrunch wrote that "the group is operating at AI speeds," noting that it had produced the SAFE proposals within a week of forming, while judging the initial guidelines "nothing terribly earth-shattering for now."[12] Security trade press framed the alliance as a bid to position open models and harnesses as defensive assets in a policy debate that could otherwise favor closed systems, with StorageReview noting its argument that AI security "should be evaluated at the full agent-stack level rather than solely through the availability of model weights."[4] The Hacker News flagged the absence of formal governance documentation and of OpenAI, Anthropic, and Google as open questions.[3] CrowdStrike, an inaugural partner, summarized the group's thesis in its own announcement: "AI safety is not achieved through opacity."[14] After the move to the Linux Foundation, Steven Vaughan-Nichols wrote in Techstrong.ai that the change could make it easier for companies to contribute "without concerns about NVIDIA controlling the initiative," asked why the group had not been placed under a neutral foundation from the start, and said it still needed to deliver "published specifications, working code, interoperable implementations, and a disclosure framework that companies will actually trust with sensitive AI-security information."[26]

## See also

- [NVIDIA](https://aiwiki.ai/wiki/nvidia)
- [AI safety](https://aiwiki.ai/wiki/ai_safety)
- [Cybersecurity](https://aiwiki.ai/wiki/cybersecurity)
- [Linux Foundation](https://aiwiki.ai/wiki/linux_foundation)
- [MLCommons](https://aiwiki.ai/wiki/mlcommons)
- [NVIDIA Open Agent Safety Platform](https://aiwiki.ai/wiki/nvidia_open_agent_safety_platform)
- [NVIDIA OpenShell](https://aiwiki.ai/wiki/nvidia_openshell)
- [OpenAI-Hugging Face agent incident](https://aiwiki.ai/wiki/openai_hugging_face_agent_incident)

## References

1. Industry Leaders Unite in Open Secure AI Alliance for AI Safety and Security. NVIDIA Blog, July 27, 2026. https://blogs.nvidia.com/blog/open-secure-ai-alliance/
2. Internet Archive snapshot of the NVIDIA launch post, July 27, 2026 (11:16 UTC), showing the original 37-member list. https://web.archive.org/web/20260727111606/https://blogs.nvidia.com/blog/open-secure-ai-alliance/
3. NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework. The Hacker News, July 27, 2026. https://thehackernews.com/2026/07/nvidia-forms-37-member-open-secure-ai.html
4. NVIDIA's Open Secure AI Alliance Launches With 35+ Members and Three Notable Absences. StorageReview, July 2026. https://www.storagereview.com/news/nvidias-open-secure-ai-alliance-launches-with-35-members-and-three-notable-absences
5. Nvidia, SpaceX, Microsoft launch AI safety initiative as OpenAI cyberattack fallout continues. CNBC, July 27, 2026. https://www.cnbc.com/2026/07/27/nvidia-ai-initiative-openai-cyber-attack.html
6. Security incident disclosure, July 2026. Hugging Face, July 16, 2026. https://huggingface.co/blog/security-incident-july-2026
7. OpenAI's accidental cyberattack against Hugging Face is science fiction that happened. Simon Willison, July 22, 2026. https://simonwillison.net/2026/Jul/22/openai-cyberattack/
8. AI Leaders Propose SAFE Guidelines for Cybersecurity Transparency. NVIDIA Blog, August 4, 2026. https://blogs.nvidia.com/blog/open-secure-ai-alliance-contributions/
9. Proposing the SAFE Working Group: An Open Community Effort to Improve AI Security. The Linux Foundation, August 4, 2026. https://www.linuxfoundation.org/blog/proposing-the-safe-working-group-an-open-community-effort-to-improve-ai-security
10. Shared AI Findings Exchange (SAFE) draft RFC. Open Secure AI Alliance RFC repository, GitHub, August 2026. https://github.com/OpenSecureAIAlliance/RFCs
11. Linux Foundation and Industry Leaders Launch Akrites to Defend Critical Open Source Software Against AI-Enabled Cyber Threats. The Linux Foundation, June 25, 2026. https://www.linuxfoundation.org/press/linux-foundation-and-industry-leaders-launch-akrites-to-defend-critical-open-source-software-against-ai-enabled-cyber-threats
12. Nvidia doesn't mess around: A week after open AI industry group formed, it's already showing progress. TechCrunch, August 4, 2026. https://techcrunch.com/2026/08/04/nvidia-doesnt-mess-around-a-week-after-open-ai-industry-group-formed-its-already-showing-progress/
13. NVIDIA-NeMo/labs-OO-Agents (NOOA) repository. GitHub, accessed August 7, 2026. https://github.com/NVIDIA-NeMo/labs-OO-Agents
14. CrowdStrike Joins the Open Secure AI Alliance. CrowdStrike Blog, July 27, 2026. https://www.crowdstrike.com/en-us/blog/crowdstrike-joins-the-open-secure-ai-alliance/
15. NVIDIA (@nvidia) on X: "Now over 120 members strong, the Open Secure AI Alliance is sharing new open source security contributions..." August 4, 2026. https://x.com/nvidia/status/2084625868173820144
16. Introducing the Coalition for Secure AI, an OASIS Open Project. OASIS Open, July 18, 2024. https://www.oasis-open.org/2024/07/18/introducing-cosai/
17. Meta Joins Coalition for Secure AI as Premier Sponsor to Advance Industry Security Standards. OASIS Open, February 3, 2026. https://www.oasis-open.org/2026/02/03/meta-joins-coalition-for-secure-ai-as-premier-sponsor-to-advance-industry-security-standards/
18. Internet Archive snapshot of the NVIDIA launch post, August 6, 2026 (08:38 UTC), showing 123 listed organizations. https://web.archive.org/web/20260806083818/https://blogs.nvidia.com/blog/open-secure-ai-alliance/
19. Internet Archive snapshot of the NVIDIA launch post, August 21, 2026 (10:57 UTC), showing 122 listed organizations. https://web.archive.org/web/20260821105744/https://blogs.nvidia.com/blog/open-secure-ai-alliance/
20. Michael Larabel. NVIDIA-Started Open Secure AI Alliance Moves To The Linux Foundation. Phoronix, September 2, 2026. https://www.phoronix.com/news/Open-Secure-AI-Alliance-LF
21. Open Secure AI Alliance Joins the Linux Foundation to Build a Shared, Open Defense Stack for the AI Era. The Linux Foundation, September 14, 2026. https://www.linuxfoundation.org/blog/open-secure-ai-alliance-joins-the-linux-foundation-to-build-a-shared-open-defense-stack-for-the-ai-era
22. Open Secure AI Alliance website. The Linux Foundation, accessed September 28, 2026. https://secureaialliance.org/
23. OpenSecureAIAlliance/RFCs issues and pull requests. GitHub, accessed September 28, 2026. https://github.com/OpenSecureAIAlliance/RFCs/issues
24. NVIDIA Launches Open Agent Safety Platform to Secure Agents From Testing to Deployment. NVIDIA Newsroom, September 28, 2026. https://nvidianews.nvidia.com/news/open-agent-safety-platform
25. Kif Leswing. Nvidia releases software platform to stop AI agents from misbehaving. CNBC, September 28, 2026. https://www.cnbc.com/2026/09/28/nvidia-releases.html
26. Steven Vaughan-Nichols. NVIDIA's Open Secure AI Alliance Moves to Linux Foundation. Techstrong.ai, September 2, 2026. https://techstrong.ai/articles/nvidias-open-secure-ai-alliance-moves-to-linux-foundation/
27. OpenAI and Hugging Face partner to address security incident during model evaluation. OpenAI, July 21, 2026. https://openai.com/index/hugging-face-model-evaluation-security-incident/

