Securing the Software Supply ChainHow to reduce the risks of developing and reusing open source software components?