Skip to main content

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] [List Home]
Re: [open-regulatory-compliance] The attempt of making simplified CC guide for the CRA Default category

It's interesting for sure.  I think it might be missing a few things (or I missed them) such as a discussion of support period requirements, and I couldn't find anything regarding the ability to transfer risk through documentation, something that has come up quite a bit in the vertical standardization efforts.

It's also unclear to me if general products will need to go to this level of documentation, but it's a very neat project.

- August

On Thu, Sep 11, 2025 at 11:32 AM Roman Zhukov via open-regulatory-compliance <open-regulatory-compliance@xxxxxxxxxxx> wrote:
Hi folks,
I'm not sure how many of you have seen this work https://github.com/sCC4CRA/, but this is a brave and nice attempt to flush out a guide for Module A (self-assessment) for Default category PDEs, by making it "the most looking-like" EUCC. I don't necessarily agree with the "certification" anchor and terms, but I think we may want to discuss it at the next ORC meeting to get some learnings, at minimum, as we work on our Whitepapers.

Cheers,
--

Roman Zhukov

Principal Architect - Security Communities Lead

Book time with Roman

_______________________________________________
open-regulatory-compliance mailing list
open-regulatory-compliance@xxxxxxxxxxx
To unsubscribe from this list, visit https://accounts.eclipse.org



Back to the top