In this report, we share the twelve most important headlines from our third state of the open source maintainer survey, including answers to questions like:
- What security and maintenance practices are most maintainers implementing today (and which practices are they not implementing)?
- Are paid maintainers doing more critical security and maintenance work than unpaid maintainers?
- How many maintainers have quit or are considering quitting?
- Are maintainers aligning their projects to security standards like OSSF Scorecards and the NIST Secure Software Development Framework (SSDF)?
- How do maintainers feel about AI-based coding tools?
- Are maintainers less trusting of contributors in the wake of the xz utils hack?