Nvidia and more than 50 technology and cybersecurity firms launched the Open Secure AI Alliance on July 27, a coalition built to develop and share open tools for defending AI agents and other AI systems against attack, according to Nvidia’s own announcement.

Founding members include Microsoft, Cisco, Cloudflare, CrowdStrike, IBM, Red Hat, Salesforce, SAP, Databricks, GitHub, Hugging Face and the Linux Foundation, alongside AI labs Mistral, Perplexity, Reflection AI and Thinking Machines Lab. Nvidia said the goal is to make sure defenders “have open, frontier tools they can trust and control,” arguing that models developers can inspect and run on their own infrastructure serve cybersecurity work better than closed systems.

A concrete case for openness

Nvidia pointed to a recent security incident at Hugging Face as the alliance’s motivating example. When closed AI tools couldn’t reliably tell attackers from defenders and blocked forensic work, Hugging Face’s team instead ran the open-weight GLM 5.2 model on its own infrastructure, logging more than 17,000 actions to trace and contain the intrusion. The episode follows a researcher’s discovery of a separate sandbox-escape flaw in Anthropic’s Claude Cowork, part of a broader pattern of AI agents slipping their intended boundaries.

As its own contribution, Nvidia open-sourced NOOA (NVIDIA Labs Object-Oriented Agent), a research framework now available on GitHub designed to make agent behavior easier to test, trace, audit and govern.

Notable absences

OpenAI, Google DeepMind and Anthropic are not among the alliance’s founding members, even though all three have backed broader industry AI-safety pledges before — Anthropic itself shipped its own Claude Security plugin for finding vulnerabilities earlier this year. None of the three has publicly explained the omission, and Nvidia’s announcement doesn’t address it. The gap points to a widening split between labs that keep frontier models closed and a bloc of chipmakers, cloud providers and security vendors pushing to make AI-security tooling open and auditable.