OpenFest 2026

Presentation Preference

Thank you for helping us plan a better program for the upcoming conference.

In the list below you will find all the talks we have accepted for the conference. By marking the talks that seem to be the most interesting for you personally, you will help us to choose rooms for the talks that match the interest.

The Anatomy of OpenZFS: How Its On-Disk Structure Delivers Business Value

OpenZFS is often discussed in terms of features such as checksumming, copy-on-write, and snapshots. But the real story lies in the on-disk structures that make these capabilities possible. This talk takes a bottom-up journey through OpenZFS, from block pointers and dnodes through object sets, uberblocks, and vdev labels, exploring how these implementation details translate into data integrity, consistency, recoverability, and operational simplicity.

Igor Ostapenko

The Model Is Not the System

AI sovereignty is often reduced to the question of whether a model can run locally. But the model is only one component of a much larger system. This talk looks at sovereign AI as an architectural problem. Using PrAIvate, a privacy-focused RAG platform built exclusively with free software apart from the models themselves, it examines how retrieval, document processing, inference, access control, APIs, deployment, and user interaction combine into a complete AI system. The central idea is that sovereignty means preserving meaningful choices: the ability to inspect, replace, migrate, integrate, and operate the components of the system independently.

stefan

Всичко е политика. И това не е лошо

WiP

Иван Басамаков

openSUSE щанд

На щанда на openSUSE ще можете да се запознаете както с проекта като цяло, така и с openSUSE Linux дистрибуциите, които заемат централно място в него.

dimitraki

blan40 (бланчо) - софтуер за провеждане на референдуми

blan40 (бланчо) е софтуер проверяващ за достоверност личните данни на подписалите се за даден референдум. Като база за сравнение се използват избирателните списъци на Република България.

Страхил Йорданов

The Art of Repetition

The first time I watched Naruto and Doraemon (Japanese Series), I hated a few characters. They were annoying or just made no sense to me. Then I grew up, watched the same shows again, and suddenly I was relating to those same characters. Some of the characters I hated became the ones I liked the most. I have seen the same thing happen in my career and in developer communities. People I did not understand the first time, conversations I did not value, communities I did not connect with, or decisions I questioned often looked very different when I came across them again. Not because they changed, but because I did. Over the years, I have travelled across 15+ countries and spent time in developer communities around the world. That gave me a lot of opportunities to meet the same kinds of people, have similar conversations, make similar mistakes, and look at familiar situations from a completely different perspective. The Art of Repetition is not about doing the same thing again. It is about seeing what you missed the first time.

Tarun Jain

Защита на Личната информация

В съвремието ни много се говори за защита на личните данни. Според мен е по-важен въпросът за защита на Личната информация. Това засяга кореспонденцията ни, комуникацията и споделените с Другите, файлове.

Георги Атанасов

FreeBSD Jails in 2026

Deep dive into FreeBSD Jail subsystem

Ivo Vachkov

Работилница по запояване

Ще направим традиционната работилница по запояване. Подходяща за деца от 10 до 90 г. Целта е хората да се научат на базови умения по спояване на електронни елементи. Работилницата както винаги ще бъде безплатна и накрая всеки ще занесе в къщи това което е запоил.

olimex

Your Agent, Your Hardware: Running a Personal AI Agent on Open Source Only

Most AI agents run in someone else's cloud, on a closed model, with your mail, calendar and chat as input. I wanted the opposite: an agent that runs on my own hardware, where every part of the stack is open source. In this talk I build one on stage. OpenClaw is the agent runtime, the model is an open-weight one served locally, MCP connects Slack, GitHub, calendar and mail, and a sandbox limits what the agent can touch. Then the harder question: how much should it be allowed to do on its own? My answer is a ladder the agent has to climb. It starts by only watching, then it suggests, then it proposes actions that I approve, and only after that does it act alone. Every action goes into an undo log, and a bad one drops it back a level. Everything I show is published under an open license, so you can run the same setup at home.

György Márk Varga

Split клавиатури - що е то и за кого

- Защо Split / Разделени клавиатури. Какво е де-факто ергономика и как е важно кое ни е удобно, а не какво ни рекламират. - Революцията на стандартизираните компоненти - от бутоните („капачките“), през превключвателите, до платките /дъната и контролерите със свързването - вече достъпно за всеки джоб. - Кои (клавиатури) и за кого - как правим клавиатурата „своя“. - Размяната между усилия и удовлетворение.

Николай Чакръкчиев

The Dark Side of AI Agents: Live Hacking Modern AI Applications

Generative AI has evolved far beyond chatbots. Today's AI agents can execute code, call external tools, access sensitive data, interact with Kubernetes clusters, and make decisions with minimal human intervention. As AI capabilities evolve, so does the attack surface, forcing security to keep pace. Through a live hacking demo, we'll show how a trusted AI agent can be manipulated into performing unintended actions without exploiting a traditional software vulnerability. Using the attack as a foundation, we'll explore how AI security is evolving through the latest work of the OWASP GenAI Security Project, examining why securing AI is no longer just about prompt injection but also about agent autonomy, tool integrations, and trust boundaries. We'll conclude with practical security patterns, including least agency, runtime guardrails, scoped identities, and sandboxing, that can be applied to real-world AI systems. You'll leave with a practical understanding of the evolving AI threat landscape and concrete techniques for building and securing AI-powered applications. What attendees will learn - Understand how AI security is evolving from LLMs to autonomous AI agents - See a live attack against a modern AI agent and understand why it succeeds - Learn how agent autonomy, tools, and trust boundaries create new security risks - Explore the latest guidance from the OWASP GenAI Security Project and the OWASP Top 10 for Agentic Applications - Apply practical security patterns to build more secure AI-powered applications

Valentin Hristev

Управление на политики за Linux работни станции с Bor

Linux работните станции все по-често се използват в организации, но централизираното им управление остава предизвикателство. Bor е проект с отворен код за дефиниране и прилагане на системни политики в разнородни Linux десктоп среди.

Благовест Петров

enter: embeddoscene

Колко по-лесно е през 2026-та да подкараме музика и анимация в/у ESP32 у-вата. Кое е важно да знаем за този тип устройства, дори да не пишем кода на ръка.

Laro Dei

ГИС с отворени средства и данни - представяне на студентски проекти

Студенти от курса по Разработване и Архитектура на Географски Информационни Системи представят своите курсови работи, създадени въз основа на технологии с отворени данни и отворени данни от София и страната. повече за курса https://intranet.fmi.uni-sofia.bg/index.php/s/Yb4koZ9reZ387ZH?openfile=true

Laro Dei, Stanimira Nikolova

Evaluation Driven Development for RAG Systems with Coding Agents

A RAG pipeline can look great in a demo and still fail when the data, queries, or requirements change. The harder part is not adding another retriever or swapping another LLM. It is knowing what broke, why it broke, and whether the change actually made the system better. This talk explores Evaluation Driven Development for RAG systems with Coding Agents. We will start by defining what good looks like, create an evaluation dataset, establish a baseline, and use measurable signals to guide development. We will evaluate both retrieval and generated responses, covering metrics such as Hit Rate, Recall, MRR, nDCG, relevance, and faithfulness. Then we will bring Coding Agents into the loop. Instead of asking an Agent to simply build a RAG pipeline, we will give it evaluations that it can run, inspect, and use to iterate on the implementation. The goal is a development workflow where every change can be tested against evidence rather than judged by whether the latest demo looks better.

Tarun Jain

Job Security

We've all seen it: the developer who writes code only they can read, the person who becomes the single point of contact for a critical system, the engineer who reaches for an obscure technology stack because familiarity with it makes them hard to replace. These are the classic "job security" moves — and they don't work. In this talk, we'll look at why these patterns feel rational but ultimately fail, why the rise of AI makes them more dangerous than ever, and what actually keeps engineers employed and valued. Real job security comes not from being impossible to replace, but from being too valuable to let go — and those are very different things. This isn't a cheat talk or a guide to appearing valuable. It's about how to actually be valuable — and that is what job security actually is.

Илиан Илиев

The Art of Ricing with Nix: Declarative, Repeatable Desktop Aesthetics for the *nix OSs

Ricing is the art of customizing the visual appearance and workflow of Unix-like operating systems. Often dismissed as mere eye candy, at its core desktop ricing is a form of digital artistic expression, ergonomic experimentation, and can bring serious developer productivity. Whether you prefer a viral minimalist setup like Omarchy or the classic pop-culture relics like Hanah Montana Linux, join us to rediscover how personalizing your computing experience with nix can spark joy and awe.

Христо Георгиев

Gone in 60 seconds: how to avoid vibe coding a patent infringement?

As part of the patent bargain, patents are publicly available technical knowledge disclosed against the promise of government-backed monopoly over the claimed invention. That means that anyone can read a patent but no one, except for the rights holder, could lawfully practice the invention for fear of infringement. In the old days, patent infringement was relatively easy to avoid for individual developers and small teams as reading on well engineered solutions required time and resource they seldom had. Fast forward to the age of coding agents, vibe coding and AI-assisted development, more generally, the friction of implementation has decreased significantly, all the while increasing the risk of patent infringement. AI has now made it trivial for even non-technical teams to ship sophisticated features in their software products. Many of these features might inadvertently read on patents which have been ingested by the underlying large language models (LLMs) in the form of training data. As the liability for patent infringement does not generally depend on intent, whether the infringing act was committed intentionally or not does not determine whether infringement has occurred. In this talk, we’re going to explore what that means for individual developers, companies and open source communities, and how each of those groups can better prepare to prevent infringement.

Ivo Emanuilov

The Agent wrote the code. It should work, right… It’s fine?

You ask an AI agent to build a product. It generates the interface, writes the backend, adds tests, and produces deployment configuration. Everything looks convincing. But who decided what the product should do, whether the architecture fits its constraints, or how the system should behave when something fails? This talk examines the engineering decisions that remain essential when agents write the code. We’ll explore how missing requirements become assumptions, why passing tests don’t prove you built the right product, and what this means for design, deployment, and operations. We’ll show how focused specifications, explicit constraints, and verifiable acceptance criteria guide agents toward useful results. We’ll also discuss why generating Rust code or infrastructure configuration does not give you the expertise to evaluate or operate it safely. You’ll leave with a practical approach to guiding AI-assisted development and recognizing when plausible output still needs engineering judgment. What attendees will learn - Identify the product, design, and operational decisions hidden inside a request to “build this” - Write focused specifications and project guidance that reduce ambiguous implementation choices - Distinguish working code from a product that meets its requirements and operating constraints - Evaluate agent-generated work across unfamiliar technologies and recognize when specialist review is needed - Define acceptance criteria covering user behavior, failure handling, deployment, and recovery

Valentin Hristev

Stop Chasing Frameworks: Engineering Elegance in the 90s HP48 Calculator

In the software industry, we are constantly chasing the next big framework or paradigm, only for it to become obsolete a week later. But sometimes, the greatest technical inspiration comes from looking back at technology built with strict constraints and sheer elegance. Enter the HP48 programmable calculators from the 1990s. It is astonishing what was achieved with a mere 2 to 4 MHz Saturn chip. From beautifully designed data types and highly optimized libraries to the enduring brilliance of Reverse Polish Notation (RPN), the HP48 is a masterclass in software and hardware efficiency. In this talk, we will explore the HP48 ecosystem and demonstrate why its architectural decisions are still highly relevant—and fun—for modern developers. Whether you track down one of the famously indestructible physical units or simply download a free mobile emulator, you will leave this talk ready to explore a piece of computing history that still holds up today.

Svet Ivantchev

Deep dive into durable workflows

There is a cool programming paradigm underlying a lot of the modern AI services that has remained relatively unknown - durable execution. Durable execution is a mechanism to incrementally checkpoint the state of a function as it makes progress, so that in the case of unexpected failure, the function can recover from where it left off. It's particularly relevant in newer stacks and projects implementing AI agents, which are long-running and stateful. A system which implements durable execution is often called a "workflow engine." This talk deep-dives into the how durable execution works, how to implement it using a variety of open source tools and why you should care.

Mihail Mikov

The Logistics of a Database Client

**Fighting the round trip** Every database request pays a toll: the trip to the server and back. On a fast network you barely notice it. Across zones or regions, the trip costs far more than the work itself. This talk follows how `go-redis`, the official **Go** client for **Redis**, learned to pay that toll less often.

Nedyalko Dyakov

init Lab stand

Ще представим init Lab - най-стария хакерспейс в България. Заповядайте да се запознаем и да ви представим някои от разработките на лаба в последната година, свързани със софтуерно радио, аналогови телефони и телевизори, 3D принтиране, ретро компютри, аудио синтез, различни електронни устройства, които сме изработили сами и много други.

Ardavast Dayleryan

Production Is Gone. Now What?

Production disappears at 3 AM: a failed disk, a bad script, a compromised account. Your backups are now the only way back, if they actually work. You'll see how Velero brings back Kubernetes workloads and their data, what it quietly leaves out, and how CSI snapshots and file-system backups keep persistent volumes safe. To cover the hosts and NAS shares, we'll introduce restic, which offers encrypted, deduplicated backups to any storage, with append-only repositories that ransomware and mistakes can't wipe. By the end, you'll have a 3-2-1 strategy, RPO and RTO targets you can actually meet, and automated restore drills that prove your backups work. An untested backup is just a hope!

Илиян Петков

Работа с механични калкулатори

Калкулатори от друга ера или математика на ръчен режим: Как са смятали преди дигиталната ера

Nikolay Mihaylov

Органичаване на социалните мрежи за деца - как да работи без проверка на възрастта

Много държави, както и Европейският съюз, осъзнават негативните ефекти на социалните мрежи върху децата. И опитват да ги ограничат с въвеждане на проверка на възрастта. В настоящата лекция ще разглеждаме защо това не работи и какви са рисковете от него, както и какъв е алтернативният подход, който би свършил работа, без да задължава всички хора да потвърждават идентичността си онлайн, за да използват основни услуги.

Божидар Божанов

Strudel.cc - в приложение за algoart, gfx and музичка

Да се запознаем с невероятно зарибяващата функционално-декларативна среда за описание на модуларен синтез, която се оказа, че може както да свири, така и да пее и рисува. При това в реално време и изцяло в бралзера. Идеологически наследник на Tidal Cycles и цялата MAX/MSP кохорта.

Petar Guglev, Laro Dei

Криптографски суверенитет на живо: дърпаме кабела на HYOK и гледаме какво спира — и какво не

„Hold Your Own Key“ (HYOK) обещава, че главният ключ на вашата организация никога не е изложен пред доставчика. Това е важно, но има смисъл само ако е вярно и следствието: когато прекъснете достъпа до ключа, работата спира. Точно това следствие рядко се демонстрира — на сцената ще го проверим в една конкретна свободна реализация и ще видим, че „спира“ не значи „спира веднага“: ключовете за данни се кешират нарочно, заради производителността, а контролът живее един слой по-горе. Двама клиенти (tenants): единият — с ключ в собствена система зад мрежата (HYOK), другият — за сравнение, с ключ в HSM-а на оператора (без HYOK). Дърпаме кабела и гледаме какво спира веднага, какво продължава до следващото разопаковане на ключ и кой изобщо може да го направи. Всичко, което демонстрирам, е свободен софтуер и ще може да се пусне с `docker compose up`.

Явор Папазов

NVIDIA Jetson: Linux и Edge AI за индустриални приложения

През последните години NVIDIA се превърна от производител на графични процесори в един от водещите играчи в света на AI, а в основата на този успех стои CUDA: платформа за паралелни изчисления и API за използване на изчислителната мощ на графичните процесори (GPU). NVIDIA Jetson е семейство от вградени Linux компютърни платформи, които намират широко приложение в индустриални устройства, изискващи AI и ML: от умни трактори, през медицински роботи, до модерни дронове. В тази презентация ще разгледаме как да изградим и поддържаме собствена Linux дистрибуция за NVIDIA хардуер с помощта на Yocto Project, OpenEmbedded и BSP слоя meta-tegra.

Леон Анави

From Zero to Immutable Kubernetes: From First Node to Fleet

Configuration management traditionally converges a running machine toward a desired state. Immutable infrastructure moves that convergence earlier: build the desired state into an image, then replace or roll back that image instead of modifying the running system. In this hands-on workshop, you’ll follow that model from a single Kubernetes node to operating a fleet. You’ll build your own immutable OS image, boot it, form a Kubernetes cluster, perform an atomic upgrade, and deliberately roll it back. Then you’ll move beyond the individual cluster. You’ll run your own fleet server, PXE-boot new machines, have them register themselves on first boot, and operate their lifecycle centrally without manually installing or configuring each machine. Along the way, we’ll look at an important distinction: uniform operations don’t require identical machines. Hardware and workload requirements can live in different system images while provisioning, upgrades, rollback, and recovery follow the same lifecycle. You’ll learn how to: Understand what changes operationally when the OS becomes an image rather than something modified in place Build a tailored immutable OS image using Ubuntu, Fedora, Debian, openSUSE, Alpine, Rocky, or Kairos’s minimal Hadron base Deploy Kubernetes on top of it and grow from one node to a multi-node cluster Perform atomic A/B upgrades and rollback Provision new machines over PXE and have them register automatically for management Operate node lifecycles centrally while using build-time policy to constrain which remote operations a node will accept Roll out OS upgrades through Kubernetes-native declarative plans Integrate image creation and fleet operations into CI/CD All exercises use Kairos and AuroraBoot, its bootstrap and fleet-management tooling. Both are open source. The workshop focuses on image-based desired state, separation of persistent data from the system, replacement and rollback, automated provisioning, and managing different system images through a common lifecycle.

Mauro Morales

Снимай. Пресъздай. Играй. От видео до 3D игра в браузъра: въведение в 3D Gaussian Splatting с отворен код

Какво ще стане, ако вместо да моделираме ниво за игра, просто го заснемем с телефона си? В тази лекция ще проследим целия път от обикновено видео или снимки до интерактивна 3D сцена, която работи директно в браузъра. Ще използваме 3D Gaussian Splatting и инструменти с отворен код като Nerfstudio за създаване на сцената, SuperSplat за обработка и оптимизация и PlayCanvas за превръщането ѝ в интерактивно преживяване. Ще видим как към заснета реална среда могат да се добавят движение, collision geometry, игрова логика и други елементи, така че резултатът да бъде не просто 3D viewer, а малка браузърна игра. Освен gaming ще разгледаме накратко и къде същият подход вече намира приложение в архитектурата, недвижимите имоти, дигиталните близнаци и други индустриални сценарии. Целта е да покажем колко достъпно е станало сканирането и създаването на интерактивни 3D преживявания за web с технологии, които всеки може да използва, изучава и надгражда.

Krasi Nikolov

Предложението ви: Zero cost abstractions: Как C/C++ оптимизира вашия код

Може би сте писали на C или C++ и ползвали gcc и clang. Може би сте подавали опцията на командния ред -O9. Какво обаче се случва "зад кулисите" и как компилатора променя вашия код?

Nikolay Mihaylov

The Four Horsemen of the Privacy Apocalypse

Privacy in Europe is undergoing a structural shift toward proactive systems of identity verification, communication governance, environmental sensing, and data infrastructure control. This talk examines four converging mechanisms driving this transition: age verification frameworks that bind access to verified identity; ongoing EU-level proposals around inspection of private encrypted communications under the guise of child safety; expansion of ubiquitous physical-world surveillance through biometric systems, and mobile inference; and the accelerating impact of AI systems that transform public data into inferential and generative models with limited provenance guarantees. Together, these developments suggest a move away from privacy as a default property of digital systems toward privacy as a conditional, regulated state contingent on compliance with layered technical and legal requirements. Using EU policy trajectory as the primary case study, the talk argues that these mechanisms are not isolated policy choices but components of a broader convergence toward an "access-controlled internet," where identity, communication, and content are increasingly mediated by interoperable governance systems rather than open network principles.

openfest@kirils.org

Никой не се ражда с 5 години опит - как да бъдеш junior в свят на senior-и

Пазарът често търси готови senior инженери, а junior позициите стават все по-малко, по-конкурентни и с все по-високи изисквания. Това изглежда като логична оптимизация на краткосрочния риск за компаниите, но създава дългосрочен проблем - откъде ще дойдат следващите senior-и, ако никой не дава първата реална възможност? В тази лекция ще разгледаме как се променя ролята на junior-а в свят на AI, automation и екипи с високи очаквания. Ще говорим за това защо завършен проект, добър README, tests, CI pipeline и умението да поискаш помощ често са по-ценни от списък с технологии в CV-то. Ще обсъдим какво означава да бъдеш полезен още в началото, без да се преструваш, че знаеш всичко, и как малките production отговорности изграждат senior мислене. Това не е лекция с обещание за „лесен начин да си намериш работа“, а по-скоро практичен разговор за уменията, навиците и средата, които превръщат един начинаещ човек в инженер, на когото постепенно може да се има доверие.

Недко Христов

Under Pressure: Measuring AI's Effects on Open Source

Open Source maintainers are increasingly vocal about the effects AI is having on their projects, from overwhelmed developers and overflowing security inboxes to growing numbers of low-quality reports and submissions. Projects have responded in different ways, ranging from restricting who can contribute based on vouching systems to the drastic measure of closing bug trackers and contribution channels. But how much of this pressure is actually measurable? In this talk, we evaluate whether any of the reported effects leave observable traces in repository data over time. Specifically, we will look at review times, review iterations, pull-request and code churn, issue resolution times and contributor retention. We will also look beyond individual projects and organizations and search for recurring signals across the wider open source ecosystem. However, every metric has its weaknesses and no signal points to one clear cause. What could be an overeager AI user in one project might be the sole maintainer battling real-life challenges in another. Therefore, we evaluate every metric critically: what influences it, which confounding factors affect it and how much of the observed variation can be connected to the change in the AI landscape. Specifically, we do not try to isolate AI contributions to a project, instead we try to find reflections of systemic changes in the repository data. Collecting these metrics allows us to connect individual reports from maintainers with quantitative data that can be analyzed across different projects and over time. In practice, we will highlight which signals are worth collecting, what we can infer from them, and which questions repository and contributor data leave unanswered.

Dan Čermák

AI in Chains: Sandboxing AI Coding Agents on Linux

AI асистентите за програмиране (Cursor, Claude Code и др.) могат да изпълняват всякакви команди с пълните права на вашия потребител и да стигат навсякъде, докъдето стигате и вие в мрежата. В тази лекция ще ви покажа как ограничих рисковете от това, като създадох sandbox за AI агенти изцяло с инструментите, които всеки от нас има в Linux.

Dinko Georgiev

Използваш AI? Колко от твоя код притежаваш?

Всички ежедневно в своята работа използват AI, но замисляме ли се колко от произведеното от нас може да се каже че е наше притежание ? Разработваш продукт но наистина ли е твой или е колекция от редове без интелектуална собственост? Ще разгледаме на достъпен език юридическите аспекти на работа с AI и това как се отразяват на труда на разработчиците.

Ивета Юскеселиева

The Database That Refuses to Die: What Modern Backend Devs Can Learn from MUMPS

In the software industry, we constantly debate the merits of the latest NoSQL databases, ORMs, and distributed data stores. We chase new tools hoping for better performance and simplicity, only to end up with incredibly complex stacks. But what if one of the most efficient, schema-less databases was actually created in the 1960s? Enter MUMPS (Massachusetts General Hospital Utility Multi-Programming System). Long before the modern NoSQL movement, MUMPS pioneered a paradigm where the programming language and the database are one and the same. By using multidimensional arrays where "global" variables are automatically and seamlessly persisted to disk, it achieves mind-boggling throughput with minimal hardware. It is so resilient and fast that it still powers the core systems of major global banks and massive healthcare networks today. In Bulgaria during the 80s it was used under the name ДИАМС-Б. In this talk, we will explore the fascinating architecture of MUMPS. We will look at its unique approach to data storage, why it eliminates the need for Object-Relational Mapping (ORM), and what modern backend developers can learn from its design. Whether you just want to understand the technology managing your medical records or want to spin up a modern open-source implementation like YottaDB, you will leave with a deep appreciation for this unsung hero of computing history.

Svet Ivantchev

Как да се проваляш професионално, без да се счупиш

Тема за rejection-и, неуспешни интервюта, лош deploy, отказан PR, изпуснат promotion или проект, който не се получава. Фокусът не е върху това да мислиш позитивно, а върху практичния процес след провал - отделяне на факти от интерпретации, търсене на feedback, малък следващ експеримент и документация на наученото. Така личният failure се превръща в postmortem без blame. Това е особено релевантно за хора в началото на кариерата, но и за senior хора, които рядко говорят публично за грешките си.

Недко Христов

Цифров суверенитет: отворен код, но не само

Суверенитетът е свобода, а използването на свободен софтуер е важна стъпка към постигането ѝ. И все пак дори отвореният код може да не е суверенен: изпълняван под чужда юрисдикция, зависим от верига на доставка, която никой не е прочел, обновяван от някого, когото не контролирате. Можете ли да го промените, или да си тръгнете? Обажда ли се до кораба майка за лиценза? Праща ли телеметрия на заден план? Кой държи ключовете към данните ви? До какво има достъп екипът по поддръжката? Лекцията разглобява „свободата“ на измерими критерии и показва кои от тях отвореният код решава и кои никога не е решавал. С конкретни случаи от последните години, през призмата на новите европейски правила — някои вече в сила, други още в проект — и с контролен списък, който можете да приложите към всеки софтуерен компонент.

Stanimira Jelezova

What happens when Agents start executing payments?

Stripe, Razorpay, PayPal, and many other payment services are all exploring agentic payments, but within their own ecosystems. An agent built for one platform can't easily initiate payments across another. What happens when agents need to move money across providers instead of staying inside proprietary networks? That's where the Open Payments standard comes in. Open Payments provides a standard API for discovering wallets, requesting authorization, and initiating payments. Interledger Protocol(ILP) transports value across different payment networks. Together, they enable interoperable, cross-currency payments without requiring every wallet provider to build custom integrations. In this talk, I'll show how I built open-payments-mcp, an MCP (Model Context Protocol) server that enables AI agents to interact with Open Payments using natural language. Through a live demo, you'll see an AI agent resolve wallet addresses, obtain the necessary authorization, generate a cross-currency quote, and orchestrate an end-to-end payment from a single prompt. Along the way, I'll also start a conversation about how payments and authorization should work in an agentic world. What does meaningful human consent look like when an AI agent is initiating payments? And how might open standards evolve to support a future where agents become trusted participants in payment workflows?

Santosh Viswanatham

Making a Cellphone Board with KiCad

We'll make a cellphone electronic board (PCB) with the free software KiCad. This board we'll include a cellular/GSM/LTE modem, antenna, microcontroller, display, buttons, speaker, and a rechargeable battery via USB-C. The cellphone would be mostly usable as a messaging device and won't be able to do voice calls, but it will be able to do SMS and Internet messaging using XMPP/Jabber.

Мартин Сотиров

Отвореният код и шрифтовото изграждане – проблеми и перспективи

Отвореният код и шрифтовото изграждане – проблеми и перспективи Анализът е насочен към преглед на набора от софтуерни приложения, които са свързани с изграждането и използването на компютърните шрифтове в различните типове цифрови системи. Поставя се въпроса за връзката между софтуерните приложения с отворен код и софтуерните приложения от търговски тип, като се открояват аспектите, в които работата по създаване на приложения с отворен код е възможна и силно препоръчителна.

Стефан Пеев

Meshtastic, MeshCore и Reticulum или как можем да общуваме свободно

Мобилната мрежа спря? Няма обхват? Търсите поверителност или искате да събирате данни от отдалечени сензори, без да зависите от оператор? LoRa радио за под 30 евро и една батерия стигат, за да общувате и обменяте данни на километри, без SIM, интернет и посредник. Ще разгледаме Meshtastic, MeshCore и Reticulum: как работят, откъде да вземете хардуер, как да го сглобите и програмирате и как да се включите в българските общности. Ще видим къде блестят (бедствия, земеделие, екология) и какви са границите им.

Илиян Петков

PWA for the win

Web capabilities push the boundaries of "what's possible" every few months. Now, many apps that previously required far more costly (and single-platform) native development are readily possible in the web via Progressive Web Apps. Here we'll review the new capabilities and their uses via real-world apps you can use today from any modern mobile device.

Jacob Smith

The Hidden Infrastructure of Open Source

Open-source projects are often measured by what is easiest to see: commits, pull requests, releases, stars, and lines of code. But none of those things explain how a project actually survives. Behind the repository is a less visible infrastructure of documentation, issue triage, testing, community support, governance, onboarding, moderation, and knowledge sharing. When this infrastructure works, contributors barely notice it. When it fails, even a technically excellent project can become difficult to use, contribute to, or maintain. This talk explores the invisible systems that make open source sustainable. We'll look at the work that happens around the code, why it is often undervalued, and what projects can do to make contribution easier without relying on a handful of people to hold everything together. Because open source isn't just code that anyone can access. It's a system that people have to be able to participate in.

Funke Olasupo

Направи сам Cloud платформа на bash за 2 часа.

Да си направим Cloud платформа от нула за 2 часа, при това на bash. Ще се научим да работим с libvirt и как работят основните функции на Cloud платформите като OpenStack или AWS.

Georgi Apostolov, Venko Moyankov

Introduction to running LLMs locally on old, spare hardware

This lecture is an introduction on how you can host open source Large Language Models (LLMs) entirely locally on old/spare hardware. You will learn what an inference server is, how you can set one up, and how you can use it to chat with an LLM that is entirely contained on your own hardware.

Georgi Apostolov

Мотивираща лекция "Бизнес клас"

Гена Събева е предприемач с над 30 години опит в бизнеса, ментор и визионер. В рамките на Open Fest 2026 тя ще разкаже какво е предприемачество, как да започнеш бизнес и какви възможности дават менторските програми, общностите и споделените знания на хора, извървели вече този път. За кого е тази лекция? Тази лекция е за всички, които някога са си казвали: „Имам идея, ама…". За всички, които искат да видят бизнеса не като суха теория, а като жив процес, в който има място за смелост, стратегия и подкрепа. Няма значение дали си ученик, студент, служител или човек с години опит – ако те вълнува предприемачеството, тук ще намериш първите реални стъпки и подкрепа, за да ги направиш. Какво ще чуете? Гена Събева ще превърне абстрактното „предприемачество" в нещо много конкретно: • Какво е предприемачество в реалния свят отвъд лъскавите истории и митове. • Как да превърнем таланти и идеи в смислен бизнес проект, а не просто „мечта"; • Баланс и устойчивост: как да организираме времето си и да изграждаме бизнес. • Как визитката и графикът ни всъщност разказват историята на бизнеса ни – и как да я направим по-силна; • Възможности за менторство, обучения и включване в общност, която подкрепя, а не съди. Какво ще получите в края? В края на лекцията всеки ще има: • по-ясна представа какво означава „първа крачка" в неговия/нейния случай; • конкретни посоки за менторство и допълнително обучение; • чувство, че предприемачеството не е самотно пътешествие, а път с много възможности за подкрепа и растеж

Гена Събева

POJO Buffers: Stringly Typed Data in Strongly Typed Languages

Не, това не е Java! JavaScript открадна термина. POJO вече е Plain Ol' JSON Object. POJO е това, в което ще напъхате данните от зареден JSON в даден език за програмиране. Статично типизираните езици имат решения за това: най-често динамични контейнери и удобни функционалности, с които да ги строим. Цената за това удобство са множество алокации и данни пръснати в паметта. В другия край на спектъра стоят супербързи сериализационни библиотеки като Protobuf, FlatBuffers, Cap'n Proto и други. Те държат всичко в един статичен буфер. Цената за тази бързина е предефинирана схема. В тази презентация ще видим как можем да съчетаем гъвкавостта на самоописващите се данни, с бързината на сериализационните библиотеки.

Борислав Станимиров

A Thousand Elephants and Sixteen Gigabytes — vorch: the imps in the box are open source, but we crank the handle

In Moving Pictures the pictures are painted by imps shut inside a box: unimaginably fast, understanding nothing of what they paint, with someone outside cranking the handle. Thirty-six years later, that turns out to be a technical description. vorch is a local orchestrator for AI video. A text idea goes in; out comes a folder of consistent frames and clips, ready for editing. The box of imps is ComfyUI (FLUX.2 Klein, Wan 2.2, ReActor). The handle is a deterministic Python state machine — not an agent framework. And the part of Gaspode, the only one who honestly says what is actually on the screen, is played by Gemma 4 (26B/4B active, multimodal, via llama.cpp): it writes the storyboard and the prompts, then looks at every generated frame and returns a structured JSON verdict — accept, or retry with a corrected prompt. Dibbler wanted a thousand elephants. The card has 16303 MiB, narration and a render will not fit on it together, and that ceiling is the project's real architect. I will show the working system, the measured numbers, and the three problems no model solved.

Preslav Penev

От въздуха до морето: Технологии с отворен код за по-чиста среда

Знаете ли колко чист е въздухът пред дома ви в момента, или дали морската вода е безопасна за децата ви? Официалните станции са малко и данните им закъсняват, затова хиляди хора измерват сами: с домашна станция от достъпни части, свързана в глобалната мрежа Sensor.Community, а в България обединена от общността AirBG.info и платформата AirBG.org. Ще видите как се сглобява такава станция, какво означават числата и кога да им вярвате, и защо за морето все още не знаем почти нищо в реално време.

Илиян Петков

Personal software with coding agents, tested against Neovim and Helix

Free software lets you change the programs you use. Coding agents make it cheap to write the tool you want. I built Xi, an open-source terminal code editor in TypeScript on OpenTUI, alone with AI coding agents in about three to four weeks. Xi combines Vim's editing model with Helix-style multi-cursor selections. Forking Neovim or Helix would have meant undoing their core decisions. Before an agent implements a command, it adds a test. The test runs the same keys in Xi and a pinned Neovim or Helix and compares the results. One test caught Xi putting the cursor on the wrong line after O and Escape. The build fails on forbidden dependencies between modules. It also fails if keystroke overhead exceeds Neovim's by more than 3 ms at the 95th percentile. Xi is young and has few users. The tests only cover what Neovim and Helix do. I still review design decisions myself. I will end with how to decide between building a new tool and forking or contributing.

Oleg Pustovit

sudo make me a towel animal

Както всеки уважаващ себе си галактически стопаджия знае, кърпата е едно от най-полезните неща, които можете да носите със себе си. А Биляна ще ви даде още една причина - животните от хавлиени кърпи. Всеки може да направи поне едно такова животно - червей. Но ако искате да надградите тези умения, включете се в някоя от кратките 30-минутни сесии, в които ще превърнем обикновените кърпи в доста по-интересни представители на фауната. За да може Биляна да ви предаде това безценно знание, тя е обиколила десетки SPA хотели, круизни кораби и други стратегически места, наблюдавала е майсторите в естествената им среда и безсрамно е откраднала занаята. Всичко това, разбира се, в името на open knowledge. За практическата част носете една голяма и една малка хавлиена кърпа. Ние също ще имаме кърпи на място, но количествата са ограничени. Don't Panic. Bring a towel.

Биляна Събева

Local-first software - Fast, private and collaborative

Cloud-based software offers all the excitement of being slow with the privilege of zero privacy. Local-first software offers an alternative to that by letting you own your data, being fast by avoiding the network overhead and still enabling syncing between users and devices. In this talk we'll get an overview of what local-first software is and how it's implemented. We'll talk about CRDTs, localStorage, IndexedDB and service workers.

Yordan

Мотики V8

В работата си, нашият екип редовно разрешава странни, интересни и дори уникални технически проблеми и бъгове. Отново сме подбрали три от изминалата година и ще ви разкажем за тях.

Nikolay Tenev

Един изтекъл патент, един модел на ИИ и проект за свободен софтуер

Моделът пише, човекът го води: кой е авторът?

Здравко Здравков

Кой притежава твоя AI-генериран код?

Все по-голяма част от софтуера бива създаден с големи езикови модели. Същевременно законодателите и съдилищата по света дават ясни сигнали, че нямат намерението да предоставят авторскоправна закрила на генерирано с AI съдържание. Комбинацията от тези две явления потенциално биха имали значителен ефект върху бъдещето на софтуерната индустрия. От друга страна, софтуерът с отворен код винаги е имал сложно отношение с авторското право. Част от успеха на движението се дължи на правната иновация на „copyleft” ефекта, за пръв път изразена в GPL лиценза, който успява да „узурпира” авторското право в полза на свободния софтуер. С възхода на AI инструментите за писане на код изглежда, че този свят е до голяма степен зад гърба ни. Трябва ли това да ни притеснява? И въобще какви са механизмите, които поддържат отворения код отворен? В тази лекция ще представя голямата картина, включително от историческа гледна точка, и ще се опитам да дам отговор на тези въпроси.

Владимир Славов

Open Source Isn't Sovereign If Nobody Can Maintain It

Open Source is widely regarded as a foundation of digital sovereignty, but an open license and access to the code don’t make your infrastructure sovereign. If critical components are only maintained and understood by a small team of developers, then all you’ve achieved is to replace dependency on a company with a dependency on a few developers. The infrastructure of Linux distributions illustrates this effect particularly well. It has evolved over decades and is highly specialized for its task: building a Linux distribution. Some of the complexity is essential: building and maintaining an operating system is difficult. But parts of the complexity is accidental and has accumulated by decade-long usage of project-specific packaging conventions, workflows and tools that are rarely encountered outside distribution development. The outcome is a high barrier to entry: what is muscle memory for a seasoned maintainer, becomes a steep wall for a newcomer. But is this really an onboarding and documentation problem? Based on our own experience in openSUSE and Fedora, we will illustrate the path from an interested user to an active contributor and show where they encounter hurdles and barriers on their journey. Specifically, we distinguish complexity that contributors need to understand, barriers that better onboarding could reduce, from accidental complexity that has accumulated over the past decades. This leads to an uncomfortable question: should we keep improving old systems, or do we have to start over in some areas to make room for new workflows and ideas? We will look at approaches that other open-source projects take and what Linux distributions can learn from them, especially where incremental improvements may no longer be enough. We do not want to attract new contributors, only to lose them shortly thereafter, but to ensure a sustainable future for the foundation of our distributions. Because having access to the source code doesn’t help if there’s no one left who can or wants to improve it.

Dan Čermák

The Audit That Humbled Us: What User Journeys Revealed About Our Content Architecture

Your documentation can be perfectly organised and still fail your users. When we audited our documentation architecture, we discovered a significant gap between how our organisation structured information and how users actually looked for answers. Topics were hard to discover, user journeys crossed boundaries our architecture did not reflect, and metadata that looked thorough on paper did little to help users in practice. This talk explores what we uncovered and how it changed the way we think about content architecture: not as a way to organise content, but as a way to help user experience with our product.

Funke Olasupo

In the AI Era, Code Is Cheap. Reputation Isn’t.

Every developer can now generate thousands of lines of code, open dozens of pull requests, or build an application over a weekend. Yet maintainers are overwhelmed, engineering teams are drowning in AI-generated noise, and review queues keep getting longer. The bottleneck is no longer writing code but deciding what deserves to be trusted. As AI makes code abundant, reputation becomes the scarcest resource in software development. This session explores why the most valuable developers in the AI era won't be the ones who generate the most code, but the ones who consistently produce high-signal contributions. Through real examples from open source and engineering teams, we'll examine how AI changes contributor behavior, why maintainers are pushing back against low-quality AI-generated work, and what developers can do to stand out in a world where everyone has access to the same models. Attendees will learn: - Why AI has shifted software engineering from a code problem to a trust problem. - How maintainers evaluate AI-assisted contributions beyond whether they "work." - Practical techniques for producing high-signal pull requests that earn credibility. - Common AI-assisted mistakes that damage reputation before you realize it. - A framework for using AI as a force multiplier without outsourcing engineering judgment.

Funke Olasupo

Кариера в епохата на AI - какво остава, когато инструментите се сменят?

Тук ще си говорим за adaptability. Вместо тезата „AI ще замени всички“, темата пита как да останеш полезен, когато workflow-ите, инструментите и очакванията се променят. Ще покажем еволюция: от писане на код, през работа с frameworks, до умение да дефинираме проблем, да валидираме output и да носим ownership за последствията. Идеята е не да всяваме страх от типа на "всички ще умрем", а да дадем модел за учене и адаптивност. Смятам четири главни посоки за важни: 1. Адаптация към технология 2. Адаптация към пазара 3. Адаптация към екипа/компанията 4. Адаптация към себе си Темата може би ще има маааалко общо с тази, която изнесох миналата година на dev.bg all in one - https://www.youtube.com/watch?v=TqM4D_VKz1E

Недко Христов

Beyond the Single Agent: Context Orchestration for Reliable AI Teams

Most AI demonstrations begin and end with one agent and one prompt. Real delivery requires something more durable: agents with distinct responsibilities, the right context at the right moment, and a reliable way to pass work between them. This talk presents the orchestration patterns behind Nexus, a coordination layer used with OpenClaw across web platforms, mobile applications, community automation and creative tooling. At the center is an Overseer with broad operational context: it understands the operator’s direction, the wider system and the current state of work. Instead of spending that valuable context window on implementation, it delegates bounded tasks to specialist agents equipped only with the knowledge they need. We will examine how context is selected and injected, how operator decisions become durable north stars, how tickets carry intent and acceptance criteria, and how agents pass the baton through implementation, independent review and continuation. The result is not merely several agents running in parallel, but a system that can preserve direction, recover between sessions and coordinate complex work without every agent needing to know everything. Attendees will leave with practical patterns for designing human-led multi-agent systems that use context efficiently and remain coherent over time.

Plamen Andonov

Приказки от стария DNS

DNS-ът е от тези привидно прости концепции, с които всеки от нас се сблъсква в кариета си, и които винаги получават едно бързо обяснение в стил "обръща домейн към IP адрес". С тази лекция, имаме за цел да влезем малко по-надълбоко в темата за DNS, за да стигнем, в крайна сметка, до простото обяснение, че "openfest.org е 185.117.82.69" Ще си поговорим за: 1. DNS и като протокол и като глобална дистрибутирана йерархична система. 2. DNS заявка - кой я "пуска" и кой и "отговаря" - т.нар. "DNS резолюция". 3. Какво имаме предвид, когато кажем "DNS сървър"? 4. Всякакъв вид DNS resolvers - рекурсивни, кеширащи, препращащи и т.н. 5. И не на последно място ще погледнем и как DNS-ът като система се отразява на нашата поверителност (privacy) в интернет - и какво може да направим по въпросa. В крайна сметка ще проследим една DNS заявка по възможните пътища, по които може да поеме, и възможните отговори, които може да получим. Лекцията е подходяща както за начинаещи, така и за хора с опит. Хора с афинитет към "homelabbing" също ще намерят стойност. Като цяло, в тази лекция, ще се забавляваме с DNS.

Radoslav Georgiev