What is an #opensource software steward?
🌐 Open source software steward is a term defined in Article 3(14) of the Cyber Resilience Act. However, the discussion on this topic is ongoing.

Check our ongoing #CRAFAQ discussion on GitHub and share your thoughts and contributions!
https://github.com/orcwg/cra-hub/blob/main/faq/stewards/what-is-a-steward.md

What is an #opensource software steward?

🌐 Open source software steward is a term defined in Article 3(14) of the CRA. However, the discussion on this topic is ongoing.

Check our ongoing #CRAFAQ discussion on GitHub and share your thoughts and contributions!
https://github.com/orcwg/cra-hub/blob/main/faq/stewards/what-is-a-steward.md

Have you recently checked the FAQ about the Cyber Resilience Act (#CRA)?

We want your input on open CRA questions.

Share your feedback! https://github.com/orcwg/cra-hub/blob/main/faq.md

#CRAFAQ #ORCWG #CyberResilienceAct

💬 There are still many unanswered questions in the #CRAFAQ, and your input can help shape the conversation.

📢 Join the discussion:
1️⃣ Review the FAQ on GitHub: https://github.com/orcwg/cra-hub/blob/main/faq.md
2️⃣ Share your perspectives and contribute directly to the conversations.

Your expertise can help clarify open questions and support the broader community in navigating these changes.

💻 It’s not just consumer devices — the Cyber Resilience Act (#CRA) applies to hardware, software, and remote services that support digital products. If you’re working with open source, there’s a good chance you’re in scope.

To learn more about what kinds of products are regulated by the CRA, read the ORC’s #CRAFAQ: https://github.com/orcwg/cra-hub/blob/main/faq.md#faq-tmp-2

🛡️ The EU’s Cyber Resilience Act (#CRA) is changing how digital products, including #OSS, are developed, distributed, and maintained. Whether you’re a developer, maintainer, or vendor, this regulation will impact your work.

To learn more about what the CRA is, read the ORC’s #CRAFAQ: https://github.com/orcwg/cra-hub/blob/main/faq.md#faq-tmp-154

Do all #opensource projects have an open source software steward?

Not all open source projects have a steward, and the ORC community is actively discussing this topic. Current discussions suggest that most projects don’t meet the criteria for having a steward, as a steward must be a "legal person" (Art. 3), such as a company, which excludes many community-driven projects.

Join this conversation on GitHub! https://github.com/orcwg/cra-hub/issues/170

#CRA #CyberResilience #CRAFAQ #ORCWG

Can a project be without a steward? · Issue #170 · orcwg/cra-hub

If a project maintainer does not want to be a steward (does not want to fulfill CRA requirements on steward, i..e has not the purpose or objective of systematically providing support on a sustained...

GitHub

Can a solo maintainer be considered to be an #opensource software steward?

Check our ongoing #CRAFAQ discussion on GitHub and share your thoughts and contributions!

🔗 https://github.com/orcwg/cra-hub/pull/1

#CRA #CyberResilience #OSS #ORCWG

Are you worried about how the EU’s Cyber Resilience Act (CRA) might impact you? Are you considering shutting down your #opensource projects?

➡️ Discussion on this topic is ongoing. The prevailing opinion is that most open source developers won’t be significantly affected, meaning you don’t need to shut down your open source projects because of the CRA.

Explore the reasons for it, and engage with the community discussion: https://github.com/orcwg/cra-hub/issues/133

#CRA #CyberResilience #CRAFAQ #ORCWG

Is distributing binaries or container images of an #opensource project considered as making it available on the market? Our community doesn’t think so. Monetisation by the original manufacturer is what determines whether a product is made available on the market.

💭 What do you think? Share your feedback: https://github.com/orcwg/cra-hub/blob/main/faq.md#faq-tmp-157

#CRAFAQ #CRA

cra-hub/faq.md at main · orcwg/cra-hub

Everything you ever wanted to know about the CRA and its implementation - orcwg/cra-hub

GitHub