Thomas Belarbi, Red Hat: “The idea of building open-source communities that are exclusively European is not viable”
ElectronLibre – The Cyber Resilience Act has created a specific status for ‘open-source software stewards’. Does this strike the right balance between holding open source accountable without undermining its model? Thomas Belarbi - We are very much in favour of this legislation. The Cyber Resilience Act (CRA) requires the monitoring of vulnerabilities, patches and maintenance over time. For open source, it… effectively creates the role of ‘open-source software steward ’, which fits our model quite well: ensuring the security and maintenance of technologies developed by communities. For a long time, open source was used as a free solution, without really considering the issue of maintaining the code over time. Yet open source is not magic: it is neither free nor unbreakable. Incidents involving logging or encryption libraries, such as OpenSSL,…