+
Skip to content

Update of the profile page #4

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 2 commits into
base: main
Choose a base branch
from
Open
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
14 changes: 10 additions & 4 deletions profile/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -12,26 +12,32 @@ The ORC WG main focus today is on supporting the open source community in develo
- **[CRA Hub](https://github.com/orcwg/cra-hub)** - Want an overview of our CRA-related work? This is the place to do it.

## How to contribute
### Step 1 - Stay up to date by joining our meetings and communication channels
- **Join our calls**. Our [meetings](https://github.com/orcwg/orcwg/blob/main/MEETINGS.md) are public and open to all. ([iCal format](https://calendar.google.com/calendar/ical/c_7db8e3f13c4fac984103918a97c704bb1d619da0fdb66d33f1747849b6020aea%40group.calendar.google.com/public/basic.ics))
- **Subscribe to our [mailing List](https://accounts.eclipse.org/mailing-list/open-regulatory-compliance)** ([Archive](https://www.eclipse.org/lists/open-regulatory-compliance/maillist.html))
- **Join our [Slack](https://orcwg.slack.com/) channel** ([Request invitation](https://join.slack.com/t/orcwg/shared_invite/zt-2vi7gi5ad-re2b35i95ar3WaVF2zoZaA))

Some key ongoing activities in which you can engage with us:
### Step 2 - Participate in our ongoing activities.
- **White paper on Open Source project types** - Find the details [here](https://github.com/orcwg/cra-hub/tree/project-types/white-papers/project-types) and the Contributing Guidelines [here](link to be added)
- **Vulnerability Management Task Force** - Check its objectives [here](). If you are ready to join and contribute check [here]() how to do it.

### Step 3 - Prepare for what is coming
- Check the [**Deliverable Plan**](https://github.com/orcwg/orcwg/blob/main/cyber-resilience-sig/deliverables.md#deliverables-plan) and get ready to contribute to them.

## The CRA FAQ
The CRA FAQ is a community effort for clarifying parts of the CRA text and related obligations in regards to how the Open Source Community is impacted.

### I'm a developer/maintainer in an open source project
- Here you have a few pointers that can help you in your work towards compliance:
- [CRA FAQs for maintainers](https://github.com/orcwg/cra-hub/blob/main/faq.md#maintainers)
- [CRA FAQs open conversations for maintainers](https://github.com/orgs/orcwg/projects/7/views/2)
- [Vulnerability handling specification](https://github.com/orcwg/vulnerability-management-spec) - we'd like to have you contributing to this specification. **This is the first obligation under the CRA**.

### I work for an OSPO
- Specific actions for
- [CRA FAQs for manufacturers](https://github.com/orcwg/cra-hub/blob/main/faq.md#manufacturers)
- [CRA FAQs open conversations for manufacturers](https://github.com/orgs/orcwg/projects/7/views/4)
- Attestation programs, SBOMs, due diligence for manufacturers… there are multiple [deliverables](https://github.com/orcwg/orcwg/tree/main/cyber-resilience-sig#deliverables) waiting for your contributions.

### I work for a Steward
- [CRA FAQs for Stewards](https://github.com/orcwg/cra-hub/blob/main/faq.md#open-source-software-stewards)
- [CRA FAQs open conversations for stewards](https://github.com/orgs/orcwg/projects/7/views/3)
- [Vulnerability handling specification](https://github.com/orcwg/vulnerability-management-spec) - Contribute and stay up to date. **This is the first obligation under the CRA**

点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载