Vouch is an open-source community trust management system that introduces an explicit vouching model to govern who is allowed to contribute to a project’s critical interactions, such as opening issues or submitting pull requests. Traditional open source has relied on implicit trust earned through effort, but the advent of AI-generated low-quality contributions has made maintainers seek more intentional vetting processes. With Vouch, existing trusted contributors explicitly “vouch” for new community members before they can participate in selected parts of the project, and they can also “denounce” users to block them should they act in bad faith. The system stores trust decisions in a simple flat file format that integrates easily with version control and can be parsed using standard tools, making the trust layer lightweight and transparent.

Features

  • Explicit vouch/denounce contributor trust model
  • Integrates with GitHub Actions for automated gating
  • Simple flat file format without external dependencies
  • Web of trust capability across projects
  • Reduces low-quality or spam contributions
  • Configurable rules for different parts of a repository

Project Samples

Project Activity

See All Activity >

License

MIT License

Follow Vouch

Vouch Web Site

Other Useful Business Software
Build Securely on AWS with Proven Frameworks Icon
Build Securely on AWS with Proven Frameworks

Lay a foundation for success with Tested Reference Architectures developed by Fortinet’s experts. Learn more in this white paper.

Moving to the cloud brings new challenges. How can you manage a larger attack surface while ensuring great network performance? Turn to Fortinet’s Tested Reference Architectures, blueprints for designing and securing cloud environments built by cybersecurity experts. Learn more and explore use cases in this white paper.
Download Now
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of Vouch!

Additional Project Details

Registered

2026-02-11