Skip to main content

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] [List Home]
[orc-ai-sig] Draft minutes of AI policy and compliance SIG meeting - September 7th 2026

Dear ORC AI policy and Compliance SIG Community,

Please find the draft AI policy and compliance SIG meeting minutes of our meeting on September 7th available for your review in this pull request.

The main topics covered include:

  • The group reviewed the draft SIG scope, proposing that the Cyber Resilience SIG focus on CRA compliance for software components while the AI SIG focuses on AI models, with cross-referencing between both groups.
  • The group discussed how to systematically assess the interaction between the CRA and AI Act, including the applicability of CRA requirements to open source AI models.
  • Members agreed that reviewing CRA Annex 1 point-by-point would provide a structured approach to evaluating its applicability to AI models.
  • The group discussed reviewing the AI Act logging standard (prEN 18229-1) to identify wording and assumptions that may not reflect FOSS development practices.
  • An update was shared on ETSI's new AI Partnership Project (AIPP) and its potential role in strengthening collaboration with international digital partners.
  • The group discussed how to address overlaps between NIS2, the AI Act, the CRA and sector-specific regulations without unnecessarily increasing the burden on development and security teams.

IMPORTANT NOTE: The scope for the AI Policy and Compliance SIG is being discussed using this online document. Please provide your feedback.

If you have any questions when checking the minutes, do not hesitate to provide your feedback directly in Github.

Best regards,

Javier Valiño
DataSpaces Program Manager | Eclipse Foundation Europe GmbH
+34 687 442 681 | eclipse.org | Twitter | LinkedIn | YouTube | Instagram | Bluesky | Mastodon
Community. Code. Collaboration. 








Back to the top