OpenSSF's CRob: 'The Runway Is Rapidly Running Out' on EU CRA Readiness (devops.com)
- CRob warns of tight deadline for open source CRA compliance.
- EU CRA enforcement expected in 2027.
- OpenSSF promotes security standards but needs more backing.
"Christopher 'CRob' Robinson of the Open Source Security Foundation (OpenSSF) warns that time is running out for open source projects to prepare for the EU Cyber Resilience Act (CRA). In a recent post, he highlights that many projects still lack required security measures. The CRA, expected to take effect in 2027, mandates systematic vulnerability handling for manufacturers and open source developers. CRob calls for increased collaboration and funding to ensure compliance, emphasizing the need for urgent action across the software supply chain."
no comments yet.