
109: The Sustainability Gap in Open Source Package Registries (With Christopher Robinson)
Dave Rubinstein and Christopher Robinson discussed the sustainability gap in open source package registries, which poses a threat to software supply chains. Robinson highlighted the exponential rise in compute costs and security demands, exacerbated by AI and malware proliferation. The Open Source Security Foundation formed a working group to address these issues, focusing on security technologies and community challenges. Robinson emphasized the need for responsible download practices and financial support for critical registries.








