ISO-Certification_OSPO

ISO Certification Underscores Our Position as Part of the Open-Source Community

Now it's official: External specialists have certified our handling of open source software. The application of the international ISO/IEC 5230 standard makes us trustworthy to partners and customers.

Author: Andreas Neemann, 2025-05-08

Even though the importance of free and open source software (FOSS) for automotive development is huge, a significant portion of software is still proprietary. However, the high speed of software development demanded by our customers requires the use and integration of available open source codes.

"For trustworthy collaboration within the supply chain and efficient risk management, the correct use of free and open source software is essential," explains Sarah Moser, Project Lead Open Source Compliance (DISS5). ZF has already committed to important basic rules in its "Open Source Manifesto".

"For trustworthy collaboration within the supply chain and efficient risk management, the correct use of free and open source software is essential."
Sarah Moser, Project Lead Open Source Compliance (DISS5)

Building Trust

A key goal of the Open Source Program Office is to build and maintain trust. Both customers and partners want to be sure that open source elements in our software products are handled professionally. "By introducing ISO 5230 (PDF: 658 kB), we can ensure compliance and reduce risks as a supplier as well as build stronger relationships with our partners and customers," explains Sarah Moser.

ZF's Open Source Program Office defined the procedural framework based on the "Open Chain Specification." It deals primarily with the use, integration and documentation of open source software as well as contributions to existing open source projects.

The "Open Chain" standard has been in place since 2020 and is identical to the ISO/IEC 5230 (PDF: 658 kB) standard. In February 2025, ZF was audited by ARS – a subsidiary of the TIMETOACT Group - ZF received ISO5230 certification (PDF: 658 kB) in mid-march. "We are setting standards. Internally, and as a beacon of inspiration and a model for the benefits of a structured approach to open source software. External certification is an important milestone, and we are proud to hold the certificate in our hands after just two years," explains Sarah Moser.