The Open Secure AI Alliance (OSAA), an industry group spearheaded by Nvidia, is seeking public input on guidelines for sharing and learning from AI cybersecurity incidents to prevent future risks.
The initiative includes a working group known as the Shared AI Findings Exchange, or SAFE. This group is focusing on proposals regarding how to confidentially report AI cybersecurity incidents, alert those affected, and conduct blame-free analysis.
Number of companies within the Open Secure AI Alliance (OSAA).
The Linux Foundation is a member of the OSAA and is managing the group's proposals. The alliance includes members such as Adobe, BlackRock, Cisco, Intel, Microsoft, Visa, and Hugging Face.
Member contributions and industry absences
Various members are developing specific AI tools and technologies: Amazon has contributed the Strands Agents building tool and the Cedar authorization language; Okta is working on agent identity technology; and Red Hat is working on agent governance. Nvidia also provides a family of open models and Garak, an open source LLM vulnerability scanner.
While the alliance comprises over 120 companies, Anthropic, OpenAI, and Google are notable absences from the group.
The OSAA movement follows an earlier open letter championed by Nvidia and signed by over 200 tech companies, which urged the White House to support open source AI efforts. In that letter, the industry group stated, “Openness may be one of the most important paths to AI safety and security.” OpenAI and Google were among the signatories of that original letter.
The debate over open-source AI occurs as the US Trump Administration was considering banning Chinese open weight models. Against such measures, the co-founder and CTO of the US open weight AI lab Arcee stated that openness is the way to best any threat posed by Chinese AI labs to the United States.