Open Source Origins: Mapping the Modern Software Supply Chain

June 16, 2026

95% of vulnerabilities originate from open-source software dependencies embedded throughout applications and containers.

But vulnerabilities are only part of the story.

Understanding where open-source software originates, who contributes to it, and how it enters your environment is critical to managing software supply chain risk.

Key Insight

💡 Analysis of more than 15 million commits associated with enterprise applications reveals that nearly half of all contributions originate from just two countries: the United States of America and Russia.

Lineaje Gold Open Source analyzes the provenance of open-source software across enterprise environments, providing visibility into contributor origins, dependency exposure, and the hidden risks that shape today's software supply chains. Schedule a demo today.