Fueling Creativity: The Worldwide Reach of Tech for Social Good

The inception of the Fueling Creativity program in 2018 marked a pivotal moment, igniting the passion of young innovators to delve into technology and actualize their imaginative concepts. This initiative has profoundly influenced over 73,000 students across more than 300 primary schools, igniting a curiosity in STEM. In 2024, the program was integrated into JPMorganChase's portfolio of Tech for Social Good, significantly extending its global footprint.

The charity behind Fueling Creativity was established by two prominent figures from JPMorganChase’s Glasgow Technology Center, with a mission to enrich their community by fostering digital innovation among the youth.

Collaborating with a team of six technology experts and educators, Fueling Creativity engaged with four Glasgow schools to initiate an app design contest. The primary objective was to encourage students to conceive an app that could ease daily routines, address a challenge, enhance the world, or provide amusement. The top ideas were subsequently transformed into operational apps by JPMorganChase’s tech volunteers, allowing students to exhibit their creations to their social circles.

The tech-savvy youngsters proposed a variety of app ideas, from improving communication to simplifying household tasks, enriching educational experiences, or animating characters and illustrations. Their innovative insights have been an invaluable asset, fostering a novel perspective on our engagement with the world.

With a focus on inclusivity, Fueling Creativity has successfully expanded its influence to the most isolated regions of Scotland, including the Scottish islands, ensuring that every young person, irrespective of their background, has an opportunity to engage. The program has organized several nationwide challenges in England and Scotland, concentrating on topics like environmental sustainability, spreading holiday cheer, and advocating for STEM, providing a platform for students from various regions to demonstrate their ingenuity and innovation.

To further encourage STEM education beyond the app design contests, Fueling Creativity has crafted workshop materials aimed at enhancing community and family involvement. Equipped with green screens, modular building blocks, and mini robots, Fueling Creativity workshops motivate children aged 5-12 to produce short stop-motion films. Through this experience, they are inspired to think critically and creatively, tackle challenges, grasp the basics of coding, and interact with their peers.

Moving forward, the trajectory of Fueling Creativity exemplifies the strength of collaborative endeavors and innovation. With the app design competition now part of Tech for Social Good and the commitment of numerous volunteers and educators, Fueling Creativity is set to inspire the next generation of digital innovators.

TikTok Resumes Operations in the United States

Less than 24 hours after the app temporarily went offline, TikTok has confirmed that it is resuming service in the United States, following reassurance from President-elect Donald Trump. TikTok stated that the incoming president provided clarity to the company's service providers, which are likely Apple, Google, and Oracle, ensuring they would not face penalties for continuing to support the app in the US. The company issued a statement, noting, "With the agreement of our service providers, we are in the process of restoring TikTok’s service. We are grateful to President Trump for offering the necessary assurance to these providers, guaranteeing they will not incur penalties for offering TikTok to over 170 million Americans, enabling more than 7 million small businesses to thrive. This move stands firmly in favor of the First Amendment and against arbitrary censorship. We look forward to collaborating with President Trump on a long-term solution to keep TikTok in the United States." This development is the latest in the ongoing saga of TikTok’s uncertain future in the U.S. Earlier, Congress passed legislation requiring ByteDance, TikTok’s Chinese parent company, to divest its U.S. operations or face a ban starting January 19. TikTok had filed a lawsuit based on First Amendment grounds, but the Supreme Court upheld the law. On the evening before the deadline, both Apple and Google removed the app from their respective app stores, alongside other ByteDance-developed apps. Oracle was reportedly instructed to shut down the servers hosting TikTok’s U.S. data, according to The Information. In a turn of events, President-elect Trump, who previously attempted to ban TikTok during his tenure, stepped in to intervene before his swearing-in. Trump announced on Truth Social that he would issue an executive order extending the deadline for enforcement of the law, allowing time for a potential national security deal. He assured that companies assisting in preventing TikTok's removal from app stores would not face liability. Under the law, Trump can only delay enforcement if ByteDance shows tangible progress on a divestiture deal. Elon Musk and billionaire Frank McCourt were named as potential buyers. McCourt made an official bid, while Musk's name surfaced in discussions with the Chinese government, according to Bloomberg. Trump expressed his desire for the United States to hold a 50% stake in any joint venture, stating that this would secure TikTok's future in trustworthy hands, making it worth hundreds of billions, if not trillions of dollars. As of the time of writing, TikTok, along with other ByteDance apps, is still unavailable in U.S. app stores. However, some users have reported regaining access to their TikTok accounts, though functionality varies. Following the Supreme Court ruling, the Biden administration appeared to back off from enforcing the ban, leaving the matter in Trump’s hands. This prompted TikTok to proactively take itself offline ahead of the January 19 deadline. TikTok CEO Shou Zi Chew directly appealed to Trump in a TikTok post, thanking him for his efforts to ensure TikTok's continued availability in the U.S. This gesture received mixed reactions. On Blind, an anonymous app, some users mocked the video, calling it "cringe." While the ban’s support in Washington has waned in recent months, with public opposition growing among U.S. adults, some lawmakers still express strong disapproval. Sen. Tom Cotton, for instance, warned that companies involved with TikTok could face severe legal consequences, including financial ruin under securities law and shareholder lawsuits. 4o mini

Read more
Strengthening Community Cyber Defenses through Engagement and Learning

As part of our commitment to Cybersecurity Awareness Week, JPMorganChase has launched a suite of vibrant community initiatives aimed at educating both young people and adults on the basics of cybersecurity, thereby bolstering their online safety. Read on to discover how these initiatives have impacted the digital resilience of the communities we support. Fostering Interest in Cybersecurity at Global Impact Academy By Candice Biamby and London Murray, Product Security In celebration of Cybersecurity Awareness Week, the cybersecurity team from the Atlanta Tech Center at JPMorganChase collaborated with the External Community Engagement program to cultivate an interest in cybersecurity among students at the Global Impact Academy (GIA) STEM Magnet High School in Fairburn, GA. With a student body of 588 talented individuals from grades 9-12, GIA offers a range of career tracks in advanced mathematics, science, engineering, biotechnology, cybersecurity, game design, computer science, and more. This half-day event included presentations by JPMorganChase’s Cybersecurity and Technology Controls experts, who discussed their career paths and the diverse opportunities available in the cybersecurity sector. Students engaged in hands-on workshops that covered various aspects of cybersecurity, such as security engineering, governance, risk management, compliance, and cyber operations. The event was a fantastic opportunity to engage with future STEM leaders. The GIA students asked thought-provoking questions and demonstrated impressive knowledge. Our team relished the lively debates, particularly the spirited exchange when students shared their AI experiences, which led to a mix of curiosity, admissions, and laughter. The students' passion and curiosity bode well for the future of cybersecurity, marking a successful conclusion to our Cybersecurity Awareness Week at JPMorganChase. Enhancing Digital Protection for Youth and Seniors By Sesh Subramanyan and Venkat Melam, Cybersecurity and Technology Controls Cybersecurity Awareness Week was a nationwide campaign in India, featuring a range of community engagement activities focused on cybersecurity. These activities included quizzes, puzzles, and awareness sessions for children and seniors from employee families, with over 200 participants. The goal was to enhance understanding of cybersecurity and encourage secure online behavior. The 'CyberKids' session, designed for children aged 12-16, covered essential topics such as secure internet usage, recognizing online threats, and safeguarding personal information. In contrast, the 'CyberSeniors' session was aimed at older family members, offering practical advice on online security, identifying scams, and protecting digital identities. These sessions provided vital knowledge about online risks, including cyberbullying and phishing, helping families establish a secure digital environment. Given the increasing cyber threats targeting the young and elderly, such awareness sessions are essential for safeguarding our loved ones. The foundation of cybersecurity begins at home.

Read more
Continuing Our Commitment to Further Open Source Security

The open source software (OSS) community gathered last week at the Open Source Security Foundation (OpenSSF) Secure Open Source Software Summit in Washington, DC to continue collaboration across industry, government, and critical infrastructure. Open source software is code that is freely available for anyone to use or modify. It drives innovation to many technologists working on world-class solutions, including JPMorgan Chase’s 57,000-plus technologists, who incorporate thousands of open source packages in developing tools that give our company, clients, and customers an edge. Why is securing Open Source Software important? OSS’s collaborative and freely accessible nature empowers technologists to collectively address shared challenges. The result is software that underpins critical functions across government and industry, including national defense systems and critical infrastructure. While the unique accessibility of OSS is a catalyst for innovation, it can also allow bad actors to find and include weaknesses in common code bases and exploit organizations at a large scale. We have witnessed a substantial number of high-profile attacks on OSS, underscoring the importance of strong public-private partnership to develop tools and solutions that will aid the many dedicated volunteers that maintain open source code. We are all responsible for bettering open source security, we encourage others using open source to join us in this critical effort. What has the Open Source Community accomplished in the last year? In May 2022, OpenSSF launched the Open Source Software Security Mobilization Plan, which was pivotal in shaping industry and government’s efforts to secure the open source software supply chain. The plan steered the enhancement of open source security education and the development of tools such as Sigstore, which enables secure validation of software, and Alpha-Omega, which finds and fixes vulnerabilities in the most commonly used packages. JPMorgan Chase, along with other financial institutions, established the Financial Services Information Sharing and Analysis Center (FS-ISAC) Supply Chain working group to socialize emerging supply chain threats to the Financial Sector and create guidance to address threats, such as the Software Supply Chain Primer White Paper published in 2025. What happened at the Summit? Participants at the Summit discussed the security challenges for the consumption of OSS in critical infrastructure sectors, potential opportunities to leverage advancements in AI for the greater benefit of open source security, and the need for shared responsibility to improve resilience of OSS in critical infrastructure. The significant presence of U.S. Government officials at the Summit is a testament to public sector’s active involvement and support for initiatives to better open source security and to continue strong public-private partnerships to achieve more secure outcomes. The summit concluded with participants discussing approaches to tangible outcomes aligned to the three objectives to be accomplished in the next year: (1) the need to provide security education for OSS developers and stakeholders, (2) reinforce the safety of OSS repositories, and (3) enable cross-collaboration for incident response. What are we doing next? There is more to be done in improving tooling to address software supply chain attacks. We see significant importance in supporting the enhancement of OSS evaluation tools, like the Security Scorecard, an automated security tool to help open source users understand the risks of the dependencies in their software, and Software Bill of Material (SBOM) capabilities, an inventory that allow users to know what components make up an application. At JPMorgan Chase, our security teams are working towards such solutions and collaborating with organizations like OpenSSF to build better integrated tooling and capabilities that will ultimately promote safer practices and prevent future significant software supply chain security breaches. Doing our part JPMorgan Chase remains committed to our partnerships toward better open source security. As a founding member of OpenSSF and through our leadership in the Financial Services Sector Coordinating Council (FSSCC) and the Financial Services Information Sharing and Analysis Center (FS-ISAC), we will continue to take an active role in supporting and shaping industry and government’s efforts to secure the open source software ecosystem.

Read more
U.S. Government Secures Major Nuclear Deal to Strengthen Clean Energy Future

The U.S. General Services Administration (GSA), responsible for managing government buildings, has just announced a major nuclear energy deal. This follows a series of nuclear energy agreements made by prominent tech companies last year. The 10-year contract, valued at $840 million, involves 10 million megawatt-hours of electricity, which the GSA claims is enough to power over 1 million homes annually. The contract was awarded to Constellation, which operates the largest nuclear fleet in the U.S., and has recently entered into an agreement with Microsoft to restart a reactor at the infamous Three Mile Island site. According to Constellation spokesperson Paul Adams, nuclear energy comprises a significant portion of the contract, amounting to around 4 million megawatt-hours. As demand for electricity from AI data centers continues to rise, Silicon Valley is increasingly turning to nuclear energy to meet its needs. As the largest energy consumer in the U.S., the federal government’s contract is a significant boon to the nuclear industry. Joe Dominguez, Constellation’s President and CEO, commented in a press release, "Frustratingly, nuclear energy had been excluded from many corporate and government sustainable energy procurement programs. Not anymore. This agreement is another powerful example of how things have changed." He added, "The U.S. government, alongside Microsoft and other entities, is backing continued investment in reliable nuclear energy, enabling Constellation to relicense and extend the life of these critical assets." Constellation claims to generate 10% of the nation's carbon-free energy. Most of its output comes from nuclear power, but it also produces hydropower, wind, and solar energy. Additionally, the company operates gas-fired plants, though it has set a target to reach 100% carbon-free electricity by 2040, up from nearly 90% today. Neither Constellation nor the GSA responded to inquiries about the breakdown of the electricity sources other than nuclear in the contract. This is the largest energy procurement deal the GSA has ever signed. “This historic procurement locks in a cost-competitive, reliable supply of nuclear energy,” GSA Administrator Robin Carnahan said in a press release. “We’re showing how the federal government can collaborate with major corporate clean energy buyers to stimulate new nuclear energy capacity and ensure a steady, affordable supply of clean energy for all.” The contract will allow Constellation to extend licenses for existing nuclear plants and "invest in new equipment and technology," potentially adding 135 megawatts of additional capacity. Over the next 10 years, GSA has agreed to purchase 2.4 million megawatt-hours of electricity from this expanded capacity. The deal also extends to 13 other federal agencies, including the Departments of Veterans Affairs, Transportation, and the Federal Bureau of Prisons, as well as the National Park Service, Social Security Administration, and the U.S. Mint. The GSA frames this contract as a way to lock in lower prices amid rising electricity demand from data centers and increasing competition for clean energy sources: "With the uncertainty over future electricity prices and the growing demand from data centers and AI facilities, this contract provides federal agencies with budget stability and protection from future price hikes by fixing their electricity costs for 10 years, while also continuing to strengthen the domestic nuclear industry." Over the past year, companies like Google, Meta, Amazon, and Microsoft have all made notable nuclear energy deals. In September, Microsoft and Constellation announced plans to restart a shuttered reactor at Three Mile Island in Pennsylvania, the site of the worst nuclear accident in U.S. history. The Biden administration has also made nuclear energy a key component of its strategy to shift the U.S. away from fossil fuels and toward energy sources that don’t contribute to climate change. Last October, the Department of Energy announced a $1.52 billion loan to help restart a retired nuclear plant in Covert Township, Michigan. While President-elect Donald Trump plans to reverse progress made on clean energy, his campaign agenda included efforts to "support nuclear energy production."

Read more
Leveraging Data to Strengthen the Asian American Narrative

Amidst a landscape where data serves as the foundation for strategic decisions, organizations such as Kundiman, dedicated to nurturing Asian American literature, often grapple with the complexities of fragmented data management. In response to these challenges, JPMorganChase's Force for Good initiative emerges—a program under the Tech for Social Good umbrella that showcases the potential of corporate expertise in assisting non-profit organizations to overcome technological hurdles and expand their impact. Kundiman, established in 2004, has been a sanctuary for Asian American writers, offering them retreats, online classes, and workshops. With over 250 writers having participated in their retreats and around 400 books authored by these participants, Kundiman's contribution to literature is significant. However, as Kundiman's influence and activities have expanded, so has the complexity of data collection necessary for their operations. Historically, Kundiman relied on a donor management system for contact management and collected data through various survey tools, leading to inconsistencies, especially in recording ethnic backgrounds. The diverse terms used by participants to describe their heritage complicated the standardization and precise analysis of demographic data. The primary goal for Kundiman was to streamline these data streams, reduce manual data handling, and improve data accuracy. The Force for Good team, inspired by Kundiman's mission, addressed this challenge by implementing a pre-built workflow automation solution to harmonize and automate data transfer across different platforms. This approach ensures that data from various sources can be automatically updated in a centralized database, eliminating the need for manual entry and reducing errors. The project's impact extended beyond mere data consolidation. It empowered Kundiman to track demographic trends and identify communities in need. As the pandemic and economic challenges shifted the needs of Asian American communities, accurate demographic tracking became essential. A 2022 report by Equitable Growth revealed that Asian Americans in New York City faced longer periods of unemployment and higher poverty rates compared to other ethnic groups. With this knowledge, Kundiman's ability to adapt and extend their support became increasingly crucial. The project's success was a testament to the collaborative spirit and dedication of all parties involved. The Force for Good team not only provided a technological solution but also offered training and documentation, ensuring that Kundiman's staff could independently maintain the new system. This comprehensive approach guaranteed long-term benefits and sustainability for Kundiman. The Force for Good program's collaboration with Kundiman exemplifies how strategic, thoughtful technological interventions can lead to significant social change. It underscores the importance of the Force for Good's ongoing support and innovation within the non-profit sector, ensuring that organizations like Kundiman can thrive and continue their vital work.

Read more
Meta Unveils 'Edits,' a New Video Editing App to Compete with CapCut

Meta recently announced the launch of a brand-new video editing application called "Edits," coinciding with the removal of ByteDance's video editing tool CapCut from the Apple App Store and Google Play Store due to the TikTok ban. This new app is expected to debut on the iOS platform next month, with an Android version to follow. Adam Mosseri, head of Instagram, revealed on the Threads platform that the company is collaborating with select creators to gather feedback on the application. He stated, "We are excited to introduce 'Edits,' a new app designed specifically for mobile video creators. No matter how the market environment changes, our mission remains to provide creators with the highest-quality tools." According to Mosseri, Edits will feature a range of innovative functions, including an inspiration zone, a creative idea management module, and a high-quality camera feature. Notably, the app will also support users in sharing draft creations with friends or collaborators. Additionally, creators can access performance data of their videos on the Instagram platform through the app, helping them optimize their content strategies. Mosseri emphasized that Edits primarily targets professional creators rather than casual users. This differentiated positioning, though difficult to quantify, reflects Meta's deep understanding of the creator ecosystem. This move by Meta continues its consistent market strategy. Recall that in June 2020, after TikTok was banned in India, Meta quickly launched Instagram Reels in early July. In 2023, the company introduced Threads, a platform competing with X. Industry analysts suggest that CapCut's temporary absence has created development opportunities for other video editing tools, and even if CapCut is reinstated in the future, the market landscape may undergo significant changes. It is worth noting that Captions, a video editing app backed by a16z, recently shifted to a freemium model in an attempt to attract more users and compete with CapCut. These market dynamics indicate that the video editing tool sector is entering a new wave of competition and innovation.

Read more
Advancing Our Dedication to Open Source Security

The community of open source software (OSS) enthusiasts convened at the Open Source Security Foundation's (OpenSSF) Secure Open Source Software Summit in Washington, DC, to foster collaboration across various sectors including business, government, and essential infrastructure. Open source software, freely accessible for utilization and modification, is a driving force behind innovation for many tech professionals. At JPMorgan Chase, our extensive team of over 57,000 technologists integrates numerous open source components into our tools, providing a competitive advantage for our company, clients, and customers. Why is the security of Open Source Software crucial? The collaborative and open nature of OSS allows tech experts to tackle common issues together, leading to software that supports vital operations in both public and private sectors, including national security systems and essential infrastructure. While OSS's open accessibility spurs innovation, it can also be exploited by malicious actors to identify and target vulnerabilities in widely-used code, impacting organizations on a broad scale. The recent surge in high-profile OSS attacks highlights the necessity for robust public-private partnerships to create tools and solutions that support the many volunteers maintaining OSS. We all have a part to play in enhancing OSS security, and we invite others who utilize open source to join us in this vital endeavor. What achievements has the Open Source Community made in the past year? In May 2022, OpenSSF introduced the Open Source Software Security Mobilization Plan, instrumental in guiding industry and government initiatives to safeguard the open source software supply chain. The plan has prompted improvements in OSS security education and the creation of tools like Sigstore, for secure software validation, and Alpha-Omega, for identifying and resolving vulnerabilities in popular packages. JPMorgan Chase, in collaboration with other financial entities, established the Financial Services Information Sharing and Analysis Center (FS-ISAC) Supply Chain working group. This group aims to share emerging supply chain threats with the financial sector and develop guidance to counter such threats, exemplified by the Software Supply Chain Primer White Paper published in 2025. What transpired at the Summit? Summit attendees explored security challenges in OSS consumption across critical infrastructure sectors, the potential for leveraging AI advancements to bolster OSS security, and the shared responsibility to enhance OSS resilience in critical infrastructure. The significant U.S. Government presence at the Summit underscores the public sector's commitment and backing for initiatives aimed at improving OSS security and fostering strong public-private partnerships for more secure outcomes. The summit concluded with discussions on strategies for achieving tangible results aligned with three objectives for the coming year: (1) providing security education for OSS developers and stakeholders, (2) bolstering the security of OSS repositories, and (3) facilitating cross-collaboration for incident response. What are our next steps? There is further work to be done in enhancing tools to counter software supply chain attacks. We recognize the importance of supporting OSS evaluation tools like Security Scorecard, an automated security tool that helps users assess the risks associated with their software dependencies, and Software Bill of Material (SBOM) capabilities, which provide an inventory of application components. At JPMorgan Chase, our security teams are致力于 developing such solutions and are collaborating with organizations like OpenSSF to create more integrated tooling and capabilities that will foster safer practices and prevent significant future software supply chain security breaches. Fulfilling Our Role JPMorgan Chase is steadfast in our commitment to partnerships aimed at improving open source security. As a founding member of OpenSSF and through our leadership in the Financial Services Sector Coordinating Council (FSSCC) and the Financial Services Information Sharing and Analysis Center (FS-ISAC), we will continue to play an active role in supporting and shaping the efforts of both industry and government to secure the open source software ecosystem.

Read more
Harnessing Data to Amplify Asian American Voices

In an era where data is the cornerstone of decision-making, organizations like Kundiman, which is committed to fostering Asian American literature, frequently encounter the challenge of managing fragmented information systems. To address these challenges, JPMorganChase's Force for Good program steps in—a venture under the Tech for Social Good initiative that demonstrates the power of corporate know-how in aiding non-profit entities to surmount technological barriers and enhance their reach. Since its inception in 2004, Kundiman has been a haven for Asian American authors, providing them with retreats, virtual classes, and workshops. With over 250 writers engaged in their retreats and approximately 400 books authored by their participants, Kundiman's imprint on the literary landscape is enduring. However, as Kundiman's reach and programs have grown, so too has the intricacy of the data gathering required for their operations. Traditionally, Kundiman utilized a donor management system for contact management and gathered data through various survey tools, resulting in inconsistencies, particularly in documenting ethnic backgrounds. The use of diverse terminology by participants to express their heritage complicated the standardization and precise analysis of demographic data. The primary objective for Kundiman was to consolidate these data streams, minimize manual data intervention, and enhance data integrity. The Force for Good team, captivated by Kundiman's mission, tackled this challenge by employing a ready-made workflow automation solution to synchronize and automate data transfer across platforms. This strategy ensures that data from different sources can be updated automatically in a central repository, eradicating the need for manual input and curtailing errors. The project's influence surpassed the realm of data consolidation. It enabled Kundiman to map demographic trends and pinpoint communities in need. As the pandemic and economic downturns shifted the needs of Asian American communities, accurate demographic tracking became indispensable. A 2022 report by Equitable Growth indicated that Asian Americans in New York City experienced longer periods of unemployment and higher poverty rates compared to other ethnic groups. Armed with this insight, Kundiman's capacity to adjust and broaden their support became increasingly vital. The project's triumph was a result of the collaborative spirit and commitment of all parties involved. The Force for Good team delivered not only a technological solution but also provided training and documentation, ensuring Kundiman's staff could maintain the new system autonomously. This holistic approach guaranteed long-term advantages and sustainability for Kundiman. The Force for Good program's partnership with Kundiman exemplifies how strategic, well-considered technological interventions can lead to substantial social change. It highlights the significance of the Force for Good's ongoing support and innovation within the non-profit sector, ensuring that organizations like Kundiman can flourish and persist in their crucial endeavors.

Read more
Strengthening Our Commitment to Open Source Security

Enthusiasts of open source software (OSS) gathered at the Open Source Security Foundation's (OpenSSF) Secure Open Source Software Summit in Washington, DC, to promote collaboration across diverse sectors such as business, government, and critical infrastructure. Open source software, which is freely available for use and modification, is a key catalyst for innovation among many technology professionals. At JPMorgan Chase, our extensive team of over 57,000 technologists incorporates numerous open source components into our tools, offering a competitive edge for our company, clients, and customers. Why is OSS security so important? The collaborative and transparent nature of OSS enables technology experts to address common challenges collectively, resulting in software that supports critical operations in both the public and private sectors, including national security systems and essential infrastructure. While the open accessibility of OSS fosters innovation, it can also be exploited by malicious actors to identify and target vulnerabilities in widely-used code, affecting organizations broadly. The recent increase in high-profile OSS attacks highlights the need for robust public-private partnerships to develop tools and solutions that support the many volunteers maintaining OSS. We all have a role in enhancing OSS security, and we invite others who use open source to join us in this crucial effort. What progress has the Open Source Community made in the past year? In May 2022, OpenSSF introduced the Open Source Software Security Mobilization Plan, which has been pivotal in guiding industry and government initiatives to protect the open source software supply chain. The plan has led to improvements in OSS security education and the development of tools such as Sigstore, for secure software validation, and Alpha-Omega, for identifying and resolving vulnerabilities in popular packages. JPMorgan Chase, in partnership with other financial institutions, established the Financial Services Information Sharing and Analysis Center (FS-ISAC) Supply Chain working group. This group aims to share emerging supply chain threats with the financial sector and develop guidance to counter such threats, as demonstrated by the Software Supply Chain Primer White Paper published in 2025. What happened at the Summit? Summit attendees discussed security challenges in OSS consumption across critical infrastructure sectors, the potential for leveraging AI advancements to enhance OSS security, and the shared responsibility to increase OSS resilience in critical infrastructure. The significant U.S. Government presence at the Summit underscores the public sector's commitment and support for initiatives aimed at improving OSS security and fostering strong public-private partnerships for more secure outcomes. The summit concluded with discussions on strategies for achieving tangible results aligned with three objectives for the coming year: (1) providing security education for OSS developers and stakeholders, (2) strengthening the security of OSS repositories, and (3) facilitating cross-collaboration for incident response. What are our next steps? There is further work to be done in enhancing tools to counter software supply chain attacks. We recognize the importance of supporting OSS evaluation tools like Security Scorecard, an automated security tool that helps users assess the risks associated with their software dependencies, and Software Bill of Material (SBOM) capabilities, which provide an inventory of application components. At JPMorgan Chase, our security teams are committed to developing such solutions and are collaborating with organizations like OpenSSF to create more integrated tooling and capabilities that will foster safer practices and prevent significant future software supply chain security breaches. Fulfilling Our Role JPMorgan Chase is steadfast in our commitment to partnerships aimed at improving open source security. As a founding member of OpenSSF and through our leadership in the Financial Services Sector Coordinating Council (FSSCC) and the Financial Services Information Sharing and Analysis Center (FS-ISAC), we will continue to play an active role in supporting and shaping the efforts of both industry and government to secure the open source software ecosystem.

Read more
5 Creative Ways to Leverage ChatGPT for Your New Year’s Goals

As the calendar turns to a new year, many of us set grand intentions for self-improvement – but, as history often proves, those resolutions can fizzle out before long. Whether your ambitions include adopting healthier habits, saving more money, or finally tackling the monumental task of reading War and Peace, ChatGPT can be your ultimate companion in staying focused and motivated. From refining your goals to overcoming obstacles along the way, this AI-powered tool is here to provide you with guidance, support, and even the occasional reality check when your goals start to veer off course (like when you try to justify "eating cake for breakfast" as a healthy fruit substitute). Here are five innovative and fun ways you can make ChatGPT your secret weapon in achieving your 2025 goals. 1. Tailor-Made Resolutions Crafting resolutions that speak to your passions is the key to maintaining motivation. ChatGPT shines when it comes to helping you think outside the box and come up with unique goals that suit your personal interests. Forget the usual clichés like "lose weight" or "spend less." Instead, share your hobbies, such as photography, travel, or acquiring new skills, and ChatGPT will help you develop resolutions like starting a daily photo journal, learning to greet people in multiple languages, or unearthing hidden gems in your local area. For instance, imagine telling ChatGPT about your love for photography or your desire to explore new cultures. The AI might suggest a resolution like taking one photo a day to build a digital yearbook, or challenging yourself to learn how to say "hello" in 52 different languages. These kinds of personalized resolutions are more likely to keep you motivated for the long haul. However, beware of setting conflicting goals—like vowing to be a better baker while also committing to a fitness regimen. If you're not careful, you might find yourself baking a cake every day! But with personalized goals, you're more likely to stay engaged and see it through. 2. Step-by-Step Action Plans Large, ambitious goals can feel daunting and difficult to navigate. ChatGPT is great at breaking them down into bite-sized, actionable steps. Suppose your resolution is to write a novel. ChatGPT can suggest a structured timeline, such as spending January outlining your story, dedicating the next six months to writing 500 words daily, and wrapping up the year with editing and feedback from beta readers. A clear, actionable plan like this makes what seemed impossible much more achievable. However, be cautious about overloading yourself. Trying to learn Spanish, write a novel, train for a marathon, and start a side business all at once can quickly become overwhelming. While ChatGPT will happily provide plans for each of these endeavors, by March, you might find yourself juggling too many projects—none of them getting the attention they need. 3. Your Personal Accountability Partner Sometimes, sticking to your resolutions requires an external nudge. ChatGPT can act as your personal accountability buddy, offering a judgment-free space to track progress and setbacks. Instead of sharing your goals with family or friends, where it might feel awkward, you can confide in ChatGPT and receive constant support. You can proudly share milestones—like sticking to your workout routine—and ChatGPT will celebrate your achievements, offering praise and motivation. If you fall short of your goals, the AI will provide gentle suggestions to help you get back on track. However, keep in mind that ChatGPT doesn’t always catch sarcasm or self-deprecating humor. Telling it you ate an entire box of donuts and asking if it's "carb-loading" for a run might prompt concern rather than the laughter you're hoping for. 4. Overcoming Roadblocks Challenges are inevitable when working toward any goal, and this is where ChatGPT can shine. When you're stuck or facing obstacles, simply explaining your issue to the AI can lead to tailored, practical solutions. For instance, if evening workouts aren’t happening due to fatigue, ChatGPT might suggest switching to morning sessions, shortening your workout time, or even finding a workout buddy for extra motivation. The AI's flexibility and personalized advice can help you adjust and move past roadblocks. Just remember—honesty is key. If you're making excuses (like claiming that a walk to the ice cream shop counts as cardio), ChatGPT will see right through it. 5. Celebrating Wins with AI When you reach your milestones, ChatGPT is excellent at helping you recognize your achievements and plan meaningful rewards. It acts like a personal cheerleader, offering suggestions to keep the momentum going. For instance, if you’ve been consistently meditating each day, ChatGPT might recommend treating yourself to a relaxing spa day, upgrading to a premium meditation app, or even sharing your journey with others to inspire them. While you still provide the prompts, these external reminders of your progress can feel more fulfilling, adding an extra layer of motivation to keep you moving forward.

Read more