NHacker Next
  • new
  • past
  • show
  • ask
  • show
  • jobs
  • submit
curl Cybersecurity Risk Assessment Request (daniel.haxx.se)
tux3 4 hours ago [-]
I will be surprised if the EU CRA results in more F500 companies entering suppport contracts with their major OSS dependencies, but that would definitely be the ideal outcome.

There's some good pro-consumer intent in this law, but as is often the case the regulators barely understand the ecosystem they're regulating. It was not designed with the massive importance of open-source in mind from the start.

kazinator 4 hours ago [-]
Why would it be the ideal outcome? Not everyone writing open source wants to be at the beck and call of some F500 companies.

That's likely the outcome that the corporate interests behind EU CRA want: to put a lasso around the neck of open source and have it be something that either serves them, or does not exist.

Avamander 3 hours ago [-]
> I will be surprised if the EU CRA results in more F500 companies entering suppport contracts with their major OSS dependencies, but that would definitely be the ideal outcome.

If it's made simple enough (with an EU legal entity), I see it quite likely.

4 hours ago [-]
Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
Rendered at 13:42:04 GMT+0000 (UTC) with Wasmer Edge.