Once again, you’ve helped us make this year’s annual survey the largest of it’s kind. 3500 of you participated in the latest survey of developers using open source. Your enthusiasm accurately represents the use of open source software in the survey findings:
- An overwhelming 86 percent of you stated that your applications are at least 80 percent open source with the remaining 20 percent custom components and code.
Organizations are reacting to this trend by providing development infrastructure that is designed to leverage open source components and frameworks (e.g., Maven, Hudson/Jenkins, Eclipse, Git, Nexus, etc.):
- 53% noted that they are standardizing on an open source development infrastructure stack.
But given the explosive growth in component usage – 8 billion downloads from the Sonatype Central Repository in 2012 represents an 800% increase in activity since its inception – it comes as no surprise that organizations are struggling to keep up:
- 76% of large organizations have no control over what components are being used in software development projects
- 65% don’t maintain an inventory of components used in production applications.
And since development is under extreme pressure to deliver applications fast while budgets are being cut, it’s also not surprising to see security taking a back seat:
- More than half of large organizations shared that developers don’t focus on security at all.
The good news is that Nexus users have a natural path to address these shortcomings – a strategy that we call Component Lifecycle Management. And we will soon launch a community relating to Good Component Practice.
But, lets’ get back to the survey.
The survey results are also available in pdf format here.
Let us know what you think about the results. What did you find surprising? What actions will you take?
And check back with us to continue the dialogue and to learn more about best practice approaches for managing your components.



