Industry Leaders Unite in Open Secure AI Alliance for AI Safety and Security
NVIDIA and founding members form a new alliance to build and share open tools that promote responsible use of, and trust in, AI.

Open source software is a critical pillar of the global economy. It underpins cloud computing, financial services, manufacturing, telecommunications, government, and internet services by making technology accessible and observable to communities of experts.
Cybersecurity is among the top three beneficiaries of open source software. The Open Secure AI Alliance, building on the leadership of the Linux Foundation’s Akrites initiative and OpenSSF community work, will work to remediate and disclose vulnerabilities using open technologies.
Just as open source created a shared foundation for software, the United States and its partners now face a choice in AI security: whether the defences that protect our infrastructure will sit inside a few opaque systems or be built on open models, harnesses, and tools that any defender can study, adapt, and deploy.
The world needs both closed and open models. For cybersecurity, open models and open harnesses are essential because they democratise defensive capabilities, increase transparency for defenders, enable cyber defence while protecting data, and complement frontier closed models with customisable, localised controls. Open source enables massively distributed, community-driven, and self-controlled defence—with no single point of failure.
Open models, like any powerful technology, can be misused—including through attempts to weaken safeguards or repurpose capabilities for cyber attacks—but those risks are not unique to open systems, and they must be managed wherever advanced AI is deployed.
The recent Hugging Face security incident delivered a clear reminder: cyber defenders need open, frontier agentic systems for self-defence. When closed AI tools, unable to distinguish attackers from defenders, blocked essential forensic analysis, Hugging Face ran the open-weight GLM 5.2 model on its own infrastructure to analyse more than 17,000 actions and contain the intrusion.
That incident showed a practical truth: when defenders cannot inspect, adapt, and run advanced AI on their own infrastructure, their ability to respond is constrained at exactly the moment speed matters most. Companies and countries need open frontier defensive tools and techniques so critical industries can build security systems across a multi-vendor ecosystem and avoid single points of failure.
That is the mission of the Open Secure AI Alliance: to ensure defenders everywhere have open, frontier tools they can trust and control.
Leaders across cloud computing, cybersecurity, enterprise software, open source foundations, and AI research—including NVIDIA, Adobe, Akamai, Atlassian, Box, Cadence, Capital One, Cisco, ClickHouse, Cloudera, Cloudflare, Cognition, Cohere, Cohesity, CrowdStrike, Crusoe, Databricks, Dataiku, Dell Technologies, Docker, DoorDash, Dream Security, Elastic, F5, Factory AI, Fireworks AI, Fortinet, G42, Genspark, GitHub, H2O.ai, HPE, Hugging Face, IBM, JFrog, Kindo AI, LangChain, the Linux Foundation, Microsoft, Mistral, Mozilla, NAVER, NetApp, Netskope, Nokia, Nous Research, Nutanix, Okta, OpenClaw, Palantir, Palo Alto Networks, Perplexity, Pinterest, Poolside, Red Hat, Reflection AI, Salesforce, SAP, ServiceNow, Siemens, SK Telecom, Snowflake, SpaceXAI, Synopsys, Thinking Machines Lab, TrendAI, Uber, Upwind, vLLM, VMware by Broadcom, Wiz, Workday, World Wide Technology, and Zscaler—are inaugural partners in the Open Secure AI Alliance, a movement to develop and share open technologies, techniques, and tools to safeguard software and agents in the age of AI.
Some argue that open models are inherently less safe because they can be misused for cyberattacks or modified to remove guardrails. Those risks are real, but they do not disappear in closed systems, and simply keeping weights closed does not prevent determined attackers from seeking or exploiting powerful AI.
The right response is not to deny defenders access to capable open systems. It is to pair openness with strong safeguards, clear rules against malicious misuse, rigorous evaluation, and rapid remediation. In cybersecurity, the safer path is the one that gives more defenders the ability to test, verify, and strengthen the systems on which society relies.
Defenders need both frontier closed models and frontier open models, working together, so they can choose the right system for the job and ensure that transparency, adaptation, and sovereign control are available wherever security demands them.
Open Research Enhances Cybersecurity and AI Safety
An AI agent isn’t just a language model. It is a complex system built from models, harnesses, and guardrails.
Real AI safety and security depend on the full agent stack—identity, permissions, harnesses, guardrails, logs, and evaluation—not just on whether model weights are open or closed. Open harnesses and tools make those controls easier for many defenders to inspect, test, and improve.
NVIDIA is contributing open models, model weights, data, and new agent harness research to the Open Secure AI Alliance to speed the development of new cybersecurity tools and techniques.
The new open-source NVIDIA Labs Object-Oriented Agent (NOOA) project is now available on GitHub to make advanced AI safety capabilities more accessible for agent harnesses. The NOOA research framework enables harnesses to better integrate with models to make agent behaviour easier to test, trace, audit, and govern.
Across the Alliance, contributors are building an open defence stack for agents—from identity and isolation to safe model formats, multi-model scanning, and secure coding workflows.



