git: 652eacfd11 - main - status/2026q2: Add Cyber Resilience Act (CRA) entry

Joseph Mingrone <[email protected]> Fri, 17 Jul 2026 14:57:40 +0000
Newsgroups gmane.os.freebsd.devel.cvs.doc
Message-ID <[email protected]>
The branch main has been updated by jrm:

URL: https://cgit.FreeBSD.org/doc/commit/?id=652eacfd114dfb9a6dba042fa1780547778b9a90

commit 652eacfd114dfb9a6dba042fa1780547778b9a90
Author:     Joseph Mingrone <[email protected]>
AuthorDate: 2026-07-13 19:44:27 +0000
Commit:     Joseph Mingrone <[email protected]>
CommitDate: 2026-07-17 14:25:50 +0000

    status/2026q2: Add Cyber Resilience Act (CRA) entry
    
    Text author:            Alice Sowerby <[email protected]>
    Reviewed by:            status (salvadore)
    Sponsored by:           The FreeBSD Foundation
    Differential Revision:  https://reviews.freebsd.org/D58220
---
 .../en/status/report-2026-04-2026-06/cra.adoc       | 21 +++++++++++++++++++++
 1 file changed, 21 insertions(+)

diff --git a/website/content/en/status/report-2026-04-2026-06/cra.adoc b/website/content/en/status/report-2026-04-2026-06/cra.adoc
new file mode 100644
index 0000000000..52fd10f1fe
--- /dev/null
+++ b/website/content/en/status/report-2026-04-2026-06/cra.adoc
@@ -0,0 +1,21 @@
+=== Cyber Resilience Act (CRA) Readiness Project
+
+Links: +
+link:https://github.com/FreeBSDFoundation/all-projects/tree/main/Cyber%20Resilience%20Act%20Readiness[Cyber Resilience Act Readiness] URL: link:https://github.com/FreeBSDFoundation/all-projects/tree/main/Cyber%20Resilience%20Act%20Readiness[]
+
+The Foundation is running a project through 2026 to actively prepare the FreeBSD Foundation, Project, and the community for the EU Cyber Resilience Act.
+There are six main areas of focus: Security and Vulnerability Handling, SBOM Toolchain, Public Documentation, Community Legislative Engagement, Public Project Repository, and Communications.
+
+Over Q2 the project has made significant progress on its key goals.
+
+Security efforts have focused on improving vulnerability handling and supply chain readiness through discussions with downstream vendors about reporting processes, Software Bill of Materials (SBOM) usage, and potential funding for compliance work.
+
+The Foundation has also strengthened collaboration with the wider open source ecosystem by participating in Open Regulatory Compliance and OpenSSF activities, joining the OpenSSF as an associate member, attending Open Source Summit North America, and engaging with projects such as Zephyr to share CRA readiness strategies.
+
+The SBOM toolchain work has advanced significantly and is now close to full end-to-end functionality.
+We plan to publish a technical blog once the remaining work is complete.
+
+The Foundation also created draft CRA guidance for the FreeBSD community and we plan to publish this along with a dedicated section of the Foundation website providing permanent compliance information.
+
+Transparency remained a priority, and the Foundation has published monthly public updates and meeting minutes on the repo linked above.
+There will be a full day CRA and SBOM tutorial at EuroBSDCon, which we invite you to attend!