cncf / cncf/toc

SCI: Curating Educational Resources on the CRA

Open
#1,876 1 comment 0 reactions 2 assignees Claimed by @jpower432 View on GitHub
tag/security-and-compliance
Dominant language
HTML
Stars
1.9k
Forks
724
Avg merge
6d 12h
Merged PRs (30d)
4

Description

_starting point from discussions_

The Cyber Resilience Act (CRA) is a huge topic, and it can be overwhelming. Our objective in this epic is to cut through the noise and provide clear, actionable guidance for the cloud-native community. We'll curate the most relevant information and create a "Practitioner's Map to the CRA," connecting the legal requirements directly to the technical solutions we're building. Let's demystify this and empower our community to act with confidence!

- [ ] Collect and centralize key official documents, articles, and community talks on the CRA.
- [ ] Identify and summarize the specific articles/annexes relevant to SCA and vulnerability management for open-source stewards.
- [ ] Draft the "Practitioner's Map to the CRA" educational material.
- [ ] Create a presentation and/or blog post that explains the key CRA takeaways for CNCF project maintainers and end-users.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.