Become a sponsor to Ulises Gascón
👋 Hello. I’m part of your software supply chain and that’s fine.
I’m Ulises Gascon from Spain, a Node.js core collaborator, Express.js Technical Committee member, Yeoman Maintainer, TC39 Delegate, and security lead maintaining 200+ OSS packages including widely-used libraries like mime-types, send, express, body-parser, and more.
I started with DIY robotics and the Maker movement, now I maintain the critical infrastructure behind the JavaScript ecosystem.
I co-author official Node.js security best practices, maintain threat models for several projects, and ship key releases like Node.js 20.x and the long-awaited Express 5.0.0. I'm also part of the OpenJS Foundation CNA, helping coordinate CVE disclosures across popular JavaScript projects.
I also reboot legacy tools (like Yeoman), build CI/CD and monitoring infra for maintainers (like Jenkins Alerts and OSSF Scorecard Monitor), and wrote Node.js for Beginners to help more developers get started.
If your codebase runs JavaScript in production… I’ve probably touched part of it. 😊
✨ Your financial support directly funds my ongoing work in several ways:
- Patch vulnerabilities before they become incidents
- Develop and release stable versions of Node.js, Express, and other critical libraries
- Build tools and infrastructure for OSS maintainers
- Keep the JavaScript ecosystem secure and sustainable
🏷️ Sponsorship Tiers
Whether you're an individual developer, a startup, or a large organization — there’s a tier for you:
- ☕ Supply Chain Supporter — Early access to my informal newsletter
- 🥉 Bronze Sponsor — Logo on my GitHub and website + shout-out on social media
- 🥈 Silver Sponsor — All Bronze perks + quarterly strategy call
- 🥇 Gold Sponsor — All Silver perks + private communication channel for async input
- 💎 Platinum Sponsor — Custom agreements for larger orgs with unique needs (e.g. compliance, ecosystem alignment, long-term support, NDAs, invoicing)
⚖️ Due to ethical and sustainability concerns, I reserve the right to decline sponsorships from individuals, companies or brands that conflict with my values or the integrity of the open source ecosystem.
Featured work
-
nodejs/node
Node.js JavaScript runtime ✨🐢🚀✨
JavaScript 112,343 -
expressjs/express
Fast, unopinionated, minimalist web framework for node.
JavaScript 67,409 -
nodejs/build
Better build and test infra for Node.
Jinja 525 -
nodejs/security-wg
Node.js Ecosystem Security Working Group
JavaScript 525 -
UlisesGascon/sample-terraform-localstack
Sample project to use Terraform, Localstack (AWS Local) and Docker compose with Nodejs
JavaScript 58 -
ossf/scorecard-monitor
Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts
JavaScript 35
$5 a month
Select☕ Supply Chain Supporter Tier
For individuals who want to say thanks and help keep things running.
✨ You get:
- Sponsor badge on your GitHub profile
- Your avatar and username shown in my GitHub sponsor section
- Early access to my informal behind-the-scenes newsletter
- That warm feeling of keeping JavaScript alive 😄
- Access to private sponsor-only repos (coming soon)
$100 a month
Select🥉 Bronze Tier
For small teams, startups, or companies relying on my work.
✨ You get:
- All Supply Chain Supporter perks
- Your logo featured on my GitHub profile and personal website
- A thank-you mention in a public post (social or blog)
$500 a month
Select🥈 Silver Tier
For companies that want to back OSS stability and gain visibility.
✨ You get:
- All Bronze Sponsor perks
- A quarterly strategy call (roadmap updates, ecosystem insights)
- Mentions in talks or blog posts (when relevant)
$1,000 a month
Select🥇 Gold Tier
For organizations that rely deeply on my work and want strategic alignment.
✨ You get:
- All Silver Sponsor perks
- Option to include me in a team chat for async ecosystem insight and informal collaboration (no SLA).
- A private line for your team to share input or surface relevant ecosystem challenges (informal, non-binding, and useful context for my roadmap)