POPULARITY
In this episode, open source legal expert Luis Villa breaks down what the EU's Cyber Resilience Act means for developers and businesses, exploring carve-outs for individual contributors and the complex relationship between security and sustainability. Luis provides practical guidance on navigating this evolving regulatory landscape while explaining why the CRA represents both a challenge and an opportunity for the open source ecosystem. The blog post for this episode can be found at https://opensourcesecurity.io/2025/2025-03-CRA_luis_villa/
In this episode, we chat with Luis Villa, co-founder of Tidelift, about everything from supporting open source maintainers to coding with AI. Luis, a former programmer turned attorney, shares stories from his early days of discovering Linux, to his contributions to various projects and organizations including Mozilla and Wikipedia. We discussed the critical importance of open source software, the challenges faced by maintainers, including burnout, and how Tidelift works toward compensating maintainers. We also explore broader themes about the sustainability of open source projects, the impact of AI on code generation and legal concerns, and the need for a more structured and community-driven approach to long-term project maintenance. 00:00 Introduction 03:20 Challenges in Open Source Sustainability 07:43 Tidelift's Role in Supporting Maintainers 14:18 The Future of Open Source and AI 32:44 Optimism and Human Element in Open Source 35:38 Conclusion and Final Thoughts Guest: Luis Villa is co-founder and general counsel at Tidelift. Previously he was a top open source lawyer advising clients, from Fortune 50 companies to leading startups, on product development, open source licensing, and other matters. Luis is also an experienced open source community leader with organizations like the Wikimedia Foundation, where he served as deputy general counsel and then led the Foundation's community engagement team. Before the Wikimedia Foundation, he was with Greenberg Traurig, where he counseled clients such as Google on open source licenses and technology transactions, and Mozilla, where he led the revision of the Mozilla Public License. He has served on the boards at the Open Source Initiative and the GNOME Foundation, and been an invited expert on the Patents and Standards Interest Group of the World Wide Web Consortium and the Legal Working Group of OpenStreetMap. Recent speaking engagements include RedMonk's Monki Gras developer event, FOSDEM, and as a faculty member at the Practicing Law Institute's Open Source Software programs. Luis holds a JD from Columbia Law School and studied political science and computer science at Duke University.
Open source has been a part of the software supply chain for decades, yet many projects and their maintainers remain undersupported by the companies that consume them. The security responsibilities for project owners has increased not only in dealing with security disclosures, but in maintaining secure processes backed by strong authentication and trust. Segment Resources: https://www.cisa.gov/news-events/news/lessons-xz-utils-achieving-more-sustainable-open-source-ecosystem https://www.cisa.gov/news-events/alerts/2024/03/29/reported-supply-chain-compromise-affecting-xz-utils-data-compression-library-cve-2024-3094 https://www.cisa.gov/securebydesign/pledge https://tidelift.com/about/press-releases/tidelift-study-reveals-that-despite-increasing-demands-from-government-and-industry-60-of-maintainers-are-still-unpaid-volunteers https://blog.tidelift.com/paying-maintainers-the-howto Application security posture management has quickly become a hot commodity in the world of AppSec, but questions remain around what is defined by ASPM. Vendors have cropped up from different corners of the AppSec space to help security teams make their programs more effective, improve their security postures, and connect the dots between developers and security. Apiiro is setting the diamond standard for ASPM, combining deep code analysis, runtime context, and native risk detection with a 100% open platform approach, providing more valuable prioritization and a more powerful policy engine. This segment is sponsored by Apiiro. Visit https://securityweekly.com/apiirorsac to learn more about them! Bots accounted for nearly half of all internet traffic in 2023, with bad bot traffic rising for a fifth consecutive year. Malicious bot activity is a significant risk for businesses as it can result in account compromise, higher infrastructure and support costs, customer churn, and more. Tune in to learn about the security risks of these automated threats and what trends Imperva has monitored. This segment is sponsored by Imperva. Visit https://securityweekly.com/impervarsac to learn more about them! Visit https://www.securityweekly.com/asw for all the latest episodes! Show Notes: https://securityweekly.com/asw-287
Open source has been a part of the software supply chain for decades, yet many projects and their maintainers remain undersupported by the companies that consume them. The security responsibilities for project owners has increased not only in dealing with security disclosures, but in maintaining secure processes backed by strong authentication and trust. Segment Resources: https://www.cisa.gov/news-events/news/lessons-xz-utils-achieving-more-sustainable-open-source-ecosystem https://www.cisa.gov/news-events/alerts/2024/03/29/reported-supply-chain-compromise-affecting-xz-utils-data-compression-library-cve-2024-3094 https://www.cisa.gov/securebydesign/pledge https://tidelift.com/about/press-releases/tidelift-study-reveals-that-despite-increasing-demands-from-government-and-industry-60-of-maintainers-are-still-unpaid-volunteers https://blog.tidelift.com/paying-maintainers-the-howto Show Notes: https://securityweekly.com/asw-287
Open source has been a part of the software supply chain for decades, yet many projects and their maintainers remain undersupported by the companies that consume them. The security responsibilities for project owners has increased not only in dealing with security disclosures, but in maintaining secure processes backed by strong authentication and trust. Segment Resources: https://www.cisa.gov/news-events/news/lessons-xz-utils-achieving-more-sustainable-open-source-ecosystem https://www.cisa.gov/news-events/alerts/2024/03/29/reported-supply-chain-compromise-affecting-xz-utils-data-compression-library-cve-2024-3094 https://www.cisa.gov/securebydesign/pledge https://tidelift.com/about/press-releases/tidelift-study-reveals-that-despite-increasing-demands-from-government-and-industry-60-of-maintainers-are-still-unpaid-volunteers https://blog.tidelift.com/paying-maintainers-the-howto Application security posture management has quickly become a hot commodity in the world of AppSec, but questions remain around what is defined by ASPM. Vendors have cropped up from different corners of the AppSec space to help security teams make their programs more effective, improve their security postures, and connect the dots between developers and security. Apiiro is setting the diamond standard for ASPM, combining deep code analysis, runtime context, and native risk detection with a 100% open platform approach, providing more valuable prioritization and a more powerful policy engine. This segment is sponsored by Apiiro. Visit https://securityweekly.com/apiirorsac to learn more about them! Bots accounted for nearly half of all internet traffic in 2023, with bad bot traffic rising for a fifth consecutive year. Malicious bot activity is a significant risk for businesses as it can result in account compromise, higher infrastructure and support costs, customer churn, and more. Tune in to learn about the security risks of these automated threats and what trends Imperva has monitored. This segment is sponsored by Imperva. Visit https://securityweekly.com/impervarsac to learn more about them! Visit https://www.securityweekly.com/asw for all the latest episodes! Show Notes: https://securityweekly.com/asw-287
Open source has been a part of the software supply chain for decades, yet many projects and their maintainers remain undersupported by the companies that consume them. The security responsibilities for project owners has increased not only in dealing with security disclosures, but in maintaining secure processes backed by strong authentication and trust. Segment Resources: https://www.cisa.gov/news-events/news/lessons-xz-utils-achieving-more-sustainable-open-source-ecosystem https://www.cisa.gov/news-events/alerts/2024/03/29/reported-supply-chain-compromise-affecting-xz-utils-data-compression-library-cve-2024-3094 https://www.cisa.gov/securebydesign/pledge https://tidelift.com/about/press-releases/tidelift-study-reveals-that-despite-increasing-demands-from-government-and-industry-60-of-maintainers-are-still-unpaid-volunteers https://blog.tidelift.com/paying-maintainers-the-howto Show Notes: https://securityweekly.com/asw-287
Tech lawyer Luis Villa returns to answer our most pressing questions: what's up with all these new content deals? How did Google think it was a good idea to ship AI Summaries in its current state? Is it too late to opt out of AI? We also discuss AI in Hollywood (spoilers!), positive things we're seeing (or hoping for) & Upstream 2024 (June 5th)!
Tech lawyer Luis Villa returns to answer our most pressing questions: what's up with all these new content deals? How did Google think it was a good idea to ship AI Summaries in its current state? Is it too late to opt out of AI? We also discuss AI in Hollywood (spoilers!), positive things we're seeing (or hoping for) & Upstream 2024 (June 5th)!
Doc Searls and Simon Phipps talk with Luis Villa of Tidelift about how it helps code maintainers get paid, plus what's happening in AI, ML, regulation and more. Hosts: Doc Searls and Simon Phipps Guest: Luis Villa Download or subscribe to this show at https://twit.tv/shows/floss-weekly Think your open source project should be on FLOSS Weekly? Email floss@twit.tv. Thanks to Lullabot's Jeff Robbins, web designer and musician, for our theme music. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit Sponsor: kolide.com/floss
Doc Searls and Simon Phipps talk with Luis Villa of Tidelift about how it helps code maintainers get paid, plus what's happening in AI, ML, regulation and more. Hosts: Doc Searls and Simon Phipps Guest: Luis Villa Download or subscribe to this show at https://twit.tv/shows/floss-weekly Think your open source project should be on FLOSS Weekly? Email floss@twit.tv. Thanks to Lullabot's Jeff Robbins, web designer and musician, for our theme music. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit Sponsor: kolide.com/floss
Doc Searls and Simon Phipps talk with Luis Villa of Tidelift about how it helps code maintainers get paid, plus what's happening in AI, ML, regulation and more. Hosts: Doc Searls and Simon Phipps Guest: Luis Villa Download or subscribe to this show at https://twit.tv/shows/floss-weekly Think your open source project should be on FLOSS Weekly? Email floss@twit.tv. Thanks to Lullabot's Jeff Robbins, web designer and musician, for our theme music. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit Sponsor: kolide.com/floss
Doc Searls and Simon Phipps talk with Luis Villa of Tidelift about how it helps code maintainers get paid, plus what's happening in AI, ML, regulation and more. Hosts: Doc Searls and Simon Phipps Guest: Luis Villa Download or subscribe to this show at https://twit.tv/shows/floss-weekly Think your open source project should be on FLOSS Weekly? Email floss@twit.tv. Thanks to Lullabot's Jeff Robbins, web designer and musician, for our theme music. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit Sponsor: kolide.com/floss
On this week's episode, Luis Villa, Director of Latino Outdoors, joins the show to talk about how to make nature a safe, welcoming and inclusive space for all people. Latino Outdoors is a unique Latinx-led organization working to create a national community of leaders in conservation and outdoor education. By providing leadership opportunities and by changing the narrative about who are environmentalists, Latino Outdoors is helping to broaden the tent of environmentalism to make it more diverse and inclusive. Support the show
Tech lawyer Luis Villa returns to Go Time to school us once again on the intellectual property concerns of software creators in this crazy day we live in. This time around, we're focusing on the implications of Large Language Models, code generation, and crazy stuff like that.
Tech lawyer Luis Villa returns to Go Time to school us once again on the intellectual property concerns of software creators in this crazy day we live in. This time around, we're focusing on the implications of Large Language Models, code generation, and crazy stuff like that.
PERSONAJE: Ana Buitrago, Marta Peirano y Sofía Prósper MODERADOR: Luis Villa (experto en estrategia y transformación digital) Termina la edición 2022 de 'Tech&Society', el programa coorganizado por Fundación Telefónica y Aspen Institute España, con un debate entre invitados de diferentes generaciones sobre la evolución de la tecnología en las últimas décadas. El encuentro contará con la participación de Ana Buitrago, directora de Servicios Jurídicos de Amazon para Sur de Europa, Alemania y Reino Unido; Marta Peirano, escritora y periodista especializada en tecnología y poder; y Sofía Prosper, arquitecta, emprendedora y activista de la privacidad. Moderará el encuentro Luis Villa, experto en estrategia y transformación digital. #TechSociety Más información en: https://espacio.fundaciontelefonica.com/evento/https:/espacio.fundaciontelefonica.com/evento/tech-society-tecnologia-humanista-para-el-futuro/ Un nuevo espacio para una nueva cultura: visita el Espacio Fundación Telefónica en pleno corazón de Madrid, en la calle Fuencarral 3. Visítanos y síguenos en: Web: https://espacio.fundaciontelefonica.com/ Twitter: https://twitter.com/EspacioFTef Facebook: https://www.facebook.com/espaciofunda... Instagram: https://www.instagram.com/espacioftef/ YouTube: https://www.youtube.com/user/CulturaS...
Oral Arguments for the Court of Appeals for the D.C. Circuit
Luis Villa-Arce v. Cmsnr. IRS
In this episode, we're joined by tech Lawyer Luis Villa to explore the question, who owns code? The company, the engineer, the team? What about when you're using AI, Machine learning, GitHub Copilot… is that still your code?
In this episode, we're joined by tech Lawyer Luis Villa to explore the question, who owns code? The company, the engineer, the team? What about when you're using AI, Machine learning, GitHub Copilot… is that still your code?
Tidelift co-founders Jeremy Katz and Luis Villa join Doc Searls and Aaron Newcomb on this episode of FLOSS Weekly to discuss how maintainers should be paid. You might think the answer would be different for every codebase, but not if there's a platform for doing it. Hosts: Doc Searls and Aaron Newcomb Guests: Jeremy Katz and Luis Villa Download or subscribe to this show at https://twit.tv/shows/floss-weekly Think your open source project should be on FLOSS Weekly? Email floss@twit.tv. Thanks to Lullabot's Jeff Robbins, web designer and musician, for our theme music. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit
Tidelift co-founders Jeremy Katz and Luis Villa join Doc Searls and Aaron Newcomb on this episode of FLOSS Weekly to discuss how maintainers should be paid. You might think the answer would be different for every codebase, but not if there's a platform for doing it. Hosts: Doc Searls and Aaron Newcomb Guests: Jeremy Katz and Luis Villa Download or subscribe to this show at https://twit.tv/shows/floss-weekly Think your open source project should be on FLOSS Weekly? Email floss@twit.tv. Thanks to Lullabot's Jeff Robbins, web designer and musician, for our theme music. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit
Tidelift co-founders Jeremy Katz and Luis Villa join Doc Searls and Aaron Newcomb on this episode of FLOSS Weekly to discuss how maintainers should be paid. You might think the answer would be different for every codebase, but not if there's a platform for doing it. Hosts: Doc Searls and Aaron Newcomb Guests: Jeremy Katz and Luis Villa Download or subscribe to this show at https://twit.tv/shows/floss-weekly Think your open source project should be on FLOSS Weekly? Email floss@twit.tv. Thanks to Lullabot's Jeff Robbins, web designer and musician, for our theme music. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit
Tidelift co-founders Jeremy Katz and Luis Villa join Doc Searls and Aaron Newcomb on this episode of FLOSS Weekly to discuss how maintainers should be paid. You might think the answer would be different for every codebase, but not if there's a platform for doing it. Hosts: Doc Searls and Aaron Newcomb Guests: Jeremy Katz and Luis Villa Download or subscribe to this show at https://twit.tv/shows/floss-weekly Think your open source project should be on FLOSS Weekly? Email floss@twit.tv. Thanks to Lullabot's Jeff Robbins, web designer and musician, for our theme music. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit
This week we're bringing JS Party to The Changelog — Nick Nisi and Christopher Hiller had an awesome conversation with Luis Villa, co-founder and General Counsel at Tidelift. They discuss GitHub Copilot and the implications of an AI pair programmer and fair use from a legal perspective.
This week we're bringing JS Party to The Changelog — Nick Nisi and Christopher Hiller had an awesome conversation with Luis Villa, co-founder and General Counsel at Tidelift. They discuss GitHub Copilot and the implications of an AI pair programmer and fair use from a legal perspective.
Luis Villa of Tidelift joins the show to discuss GitHub Copilot and the implications of an AI pair programmer from a legal perspective.
Luis Villa of Tidelift joins the show to discuss GitHub Copilot and the implications of an AI pair programmer from a legal perspective.
Listen to the episode with Luis Villa Del Campo, Strategy & Design Independent Consultant, and ✔️ Learn about the characteristics and benefits of Design Thinking, ✔️ Discover what a human-centered approach in business really means, ✔️ Hear about how to sustain your [creative] spark in the corporate world, and much more! Luis Villa Del Campo is an expert in building companies and transforming organizations through the design of human-centric products, services and cultures. During the last 10 years, Luis has worked in Strategy & Design at Fjord and Accenture accompanying executives and teams through changing the way they work and bringing new perspectives and opportunities to their businesses. Luis believes empathy, creativity and diversity are keys to a more systemic and adaptive leadership able to understand the role of technology, navigate ambiguity and sense, and respond to change in customer and society expectations. Tune in!
Deploy Friday: hot topics for cloud technologists and developers
The internet economy would not be what it is today without the influence and the value added by open source software. As software development in general has become more sophisticated, complex, and time-consuming, maintaining open source software has, too. Today we talk about the importance of funding open source software sustainably with Pia Mancini, Co-founder & CEO of Open Collective, and Luis Villa, Co-founder of Tidelift.Time vs. money in open sourceOpen source software is not exactly “free”. As Pia Mancini explains, “It's free in the sense that you do not have to pay for it in hard cash. But someone is paying for it with their time.”And as open source software has gotten more complex, it takes more time to develop and maintain it. Luis Villa adds, “When I first started, you could hack something useful and put it out there in a weekend. But now it can take decades or centuries of effort.”As Luis points out, having that time is also a function of privilege. “Part of why open source is even less diverse than software as a whole is because for a long time, it required a lot of economic privilege to get involved.”The current imbalance in the open source worldPia says the current ubiquitousness of open source is the result of a successful “battle” to convince companies of its value. But winning that battle has come with a cost. She explains, “There’s a huge imbalance between those who are using and profiting from open source software, and those who are creating but not profiting from it. And the lion’s share of the burden falls on the side of the maintainers.” Braiding sustainability into open source’s future Luis and Pia have a few ideas on how to remedy this imbalance and work towards a more sustainable open source future. For one, we can start thinking about sustainability more holistically. Pia says, “Sustainability is as much financial sustainability as it is sustainability of the community.” To make sure your project thrives as part of a sustainable community, Pia suggests:Good onboarding practices to make your project inviting to newbiesEngaging with others who regularly contribute and maintain open source projectsA well established core team to help you make decisions on governance of the projectTry Tidelift and Open Collective on Platform.sh today to bring sustainability and open source together.Platform.shLearn more about us.Get started with a free trial.Have a question? Get in touch!Platform.sh on social mediaTwitter @platformshTwitter (France): @platformsh_frLinkedIn: Platform.shLinkedIn (France): Platform.shFacebook: Platform.shWatch, listen, and subscribe to the Platform.sh Deploy Friday podcast:YouTubeApple PodcastsBuzzsproutPlatform.sh is a robust, reliable hosting platform that gives development teams the tools to build and scale applications efficiently. Whether you run one or one thousand websites, you can focus on creating features and functionality with your favorite tech stack and leave managing infrastructure and processes to us.
El epidemiólogo español e investigador de Salud Pública en el Hospital Middlemore Auckland quien ha cumplido un rol clave en el comba te al COVID-19 en Nueva Zelanda, Luis Villa, explicó en Vía Pública el cómo ha sido el manejo de esta en dicho país, además de analizar el rebrote actual que afecta a Europa y el último anuncio realizado por Pfizer y Biontech con su vacuna que tendría una eficacia del 90%.
La diferencia entre una buena experiencia y una experiencia genial es un simple detalle, aparentemente sencillo, pero también sutil. ¿Somos realmente conscientes de la satisfacción que nos da algo que funciona bien? ¿O de cómo y por qué algo nos engancha? En este capítulo de Bola de Cristal hablamos con Luis Villa sobre los productos y servicios digitales que más usamos.
José Luis Villa / Experto en Deportes
CICUTA NEWS RADIO -emite el Comentario Deportivo de José Luis Villa -Experto en Deportes
CICUTA NEWS RADIO Emite el Comentario Deportivo de José Luis Villa / Experto en Deportes
CICUTA NEWS RADIO Emite el Comentario Deportivo José Luis Villa experto en deportes
CICUTA NEWS RADIO Emite el Comentario Deportivo de José Luis Villa / Experto en Deportes
CICUTA NEWS RADIO Emite el Comentario Deportivo de José Luis Villa / Experto en Deportes
CICUTA NEWS RADIO Emite el Comentario Deportivo de José Luis Villa / Experto en Deportes
CICUTA NEWS RADIO Emite el Comentario Deportivo de José Luis Villa - Experto en Deportes
CICUTA NEWS RADIO Emite el Comentario Deportivo de José Luis Villa (Experto en Deportes)
CICUTA NEWS RADIO Emite el Comentario Deportivo de José Luis Villa (Experto en deportes)
CICUTA NEWS RADIO Emite la opinión de José Luis Villa experto en deportes
CICUTA NEWS RADIO Emite el comentario deportivo de José Luis Villa (Experto en Deportes)
CICUTA NEWS RADIO Emite el comentario deportivo de José Luis Villa - Especialista en Deportes
CICUTA NEWS RADIO Emite el comentario deportivo de José Luis Villa
CICUTA NEWS RADIO Emite la opinión de José Luis Villa
CICUTA NEWS RADIO Emite el comentario deportivo de José Luis Villa
CICUTA NEWS RADIO Emite el comentario deportivo del José Luis Villa
CICUTA NEWS RADIO Emite el comentario deportivo de José Luis Villa
On this week's episode, Luis Villa, Director of Latino Outdoors, joins the Green Gang to talk about how to make nature a safe, welcoming and inclusive space for all people. Latino Outdoors is a unique Latinx-led organization working to create a national community of leaders in conservation and outdoor education. Started in California, Latino Outdoors is now an international volunteer movement.Let's face it: mainstream environmentalism is too white. But that is not because people of color don't care. (Polling suggests the opposite: that people of color express more protective sentiments on issues like climate change than white people.) Rather, people of color are missing from mainstream environmentalism because they have been excluded. The Green Gang believes that all people have an inherent love of nature. Discovering or reawakening that love requires getting into natural spaces and feeling like you belong there.Support the show (https://www.humboldtbaykeeper.org/get-involved/donate)
As a developer and user of open source code, you interact with software and digital media every day. What is often overlooked are the rights and responsibilities conveyed by the intellectual property that is implicit in all creative works. Software licenses are a complicated legal domain in their own right, and they can often conflict with each other when you factor in the web of dependencies that your project relies on. In this episode Luis Villa, Co-Founder of Tidelift, explains the catagories of software licenses, how to select the right one for your project, and what to be aware of when you contribute to someone else's code.