Cyber Resilience Act

ORC Learning Hub: Preparing Open Source Teams for CRA Compliance

ORC Learning Hub: Preparing Open Source Teams for CRA Compliance

The Eclipse Foundation and ORC Working Group have launched the ORC Learning Hub, a free modular training platform helping developers, maintainers, and security teams prepare for the EU’s Cyber Resilience Act. With the first CRA obligations taking effect in September 2026, the initiative addresses a critical gap in role-specific compliance education for open source software supply chains. ECI Research analysts assess what this means for ITDMs and engineering teams navigating the new regulatory landscape.

ORC Learning Hub: Preparing Open Source Teams for CRA Compliance Read More »

CRA Compliance and Trustable Software: What OCX 2026 Revealed

CRA Compliance and Trustable Software: What OCX 2026 Revealed

The Eclipse Foundation’s OCX 2026 made clear that CRA compliance is a product development problem, not a legal checkbox. Manufacturers face a hard deadline, open source maintainers face an inbound wave of questionnaires, and AI-generated code is adding new layers of compliance debt. Here’s what ITDMs and developers need to act on now.

CRA Compliance and Trustable Software: What OCX 2026 Revealed Read More »

Sovereignty Turns from Policy Debate to Platform Design at KubeCon EU 2026

Sovereignty Turns from Policy Debate to Platform Design at KubeCon EU 2026

At KubeCon EU 2026, Stack8s framed sovereignty as more than a compliance issue. Enterprises are increasingly connecting data sovereignty, compute portability, vendor lock-in, and cloud cost control into a broader platform strategy.

Sovereignty Turns from Policy Debate to Platform Design at KubeCon EU 2026 Read More »

Open Source Security Becomes a Platform Requirement at KubeCon EU 2026

Open Source Security Becomes a Platform Requirement at KubeCon EU 2026

At KubeCon EU 2026, Minimus positioned open source security as more than a community issue. Between SBOM pressure, software supply chain risk, and the Cyber Resilience Act, enterprises are being pushed to treat dependency visibility and hardened container images as part of baseline security posture.

Open Source Security Becomes a Platform Requirement at KubeCon EU 2026 Read More »