EU’s Cyber Resilience Act isn’t fully in effect yet, but maintainers are already bracing for compliance requests. cURL creator @bagderdaniel:// stenberg:// is among the first to receive one (from a Fortune 500 company using a 2 year old version.)

What happens when companies treat volunteers like vendors?

socket.dev/blog/oss-maintainer

0
0
0

If you have a fediverse account, you can quote this note from your own instance. Search https://fosstodon.org/users/SocketSecurity/statuses/114870894966425617 on your instance and quote it. (Note that quoting is not supported in Mastodon.)