EU CRA (Cyber Resilience Act)
EU CRA (Cyber Resilience Act)
Posted Jan 2, 2026 22:05 UTC (Fri) by hailfinger (subscriber, #76962)In reply to: EU CRA (Cyber Resilience Act) by Wol
Parent article: Kroah-Hartman: Linux kernel security work
> Stewards aren't affected by the CRA either! READ THE CRA.
I did read the CRA. I even commented on it before it became the law and some of my suggestions ended up in the CRA. So yes, I think I can claim that I did read it.
I did read the CRA. I even commented on it before it became the law and some of my suggestions ended up in the CRA. So yes, I think I can claim that I did read it.
And yes, despite your claims, stewards are affected by the CRA.
Please look at the official text of the CRA, Chapter II, Article 24: "Obligations of open-source software stewards".
https://eur-lex.europa.eu/legal-content/EN/TXT/HTML/?uri=...
> [...] IT MUST HAVE A CRA MARK
There is no such thing as a CRA mark. Sorry.
