Today we're launching Talos Enterprise Linux: a commercial license that brings the security and compliance tooling enterprises need for production deployments under one license and one support relationship.
Talos Linux has always been secure by design - immutable, API-driven, minimal by default. That's held up well against the questions engineers ask, but it's not always enough for the questions a security review asks before a production sign-off: Where's the SBOM and VEX file for this exact build? What's your CVE SLA? Is there FIPS-validated cryptography? Who indemnifies us if there's an IP claim? Those aren't feature gaps - they're artifacts and guarantees that take dedicated, ongoing work to produce. Talos Enterprise Linux is the answer to those questions.
One note: this has been in the works for a long time, well before Yardi acquired Sidero Labs. (If you missed that, see this blog from yesterday.) This is simply the next step in enterprise readiness for Talos Linux.
What's included
Talos Enterprise Linux brings together the artifacts and commitments compliance-driven teams have been asking us for:
* schematic-specific SBOMs generated for your exact build (including extensions)
* curated VEX data so you can quickly triage which CVEs actually affect you
* signed build attestations
* FIPS-compliant builds
* defined CVE response SLAs
* commercial IP indemnity
It's built to be an ideal foundation for NIS2 and CRA compliance work, where those artifacts move from nice-to-have to a documented requirement.
Talos Enterprise Linux is now the license that includes Omni Enterprise. Going forward, a Talos Enterprise Linux license includes Omni Enterprise access, so compliance-focused customers get fleet management and the artifacts above under one license and one support relationship instead of two separate agreements.
FAQ
Is this a fork, or a different product?
Neither. Talos Linux and Talos Enterprise Linux are built from the same codebase. Other than FIPS-compliant builds, there is no feature difference between the open-source and Enterprise builds - the difference is entirely in the availability of security artifacts, indemnity, CVE SLAs and support.
Does this mean Talos Linux is becoming less open source?
No. Talos Linux remains fully open source under the MPL-2.0 license, unchanged. Talos Enterprise Linux is additive - a paid option for teams that specifically need the compliance artifacts and support commitments above, not a gate in front of anything that's free today.
Does this mean future features will only go in the Enterprise version of Talos Linux?
No. Talos Enterprise Linux will not have features that Talos Linux does not. It is the same code, just built with guarantees around it.
Do I need to move to Talos Enterprise Linux?
Only if your organization needs the artifacts above for a security review, a regulatory requirement like NIS2 or CRA, Omni Enterprise, or if you want commercial support with SLAs. If none of that applies to you, Talos Linux continues exactly as it is.
What happens to my existing Omni Enterprise agreement?
Nothing. You'll also get access to Talos Enterprise Linux within the next few weeks, so you can start using it right away. From your next renewal, or if you're a new customer, Omni Enterprise is included as part of a Talos Enterprise Linux license.
If you're navigating a compliance review right now and want to see whether Talos Enterprise Linux covers what your security team is asking for, reach out to us at sales@siderolabs.com.



