Being cheeky here, but these are only good if we enforce these, and if they are actually enforceable :) Self-certification is considered a joke in many industrial places :)

Also, as an open source project, we are protected by the apache licence, which says that we offer no warranty.

The european CRA goes forward on this idea, by mandating that actual responsibility is accepted by the organizations that sells the products.

Sebastien


On 10/02/2025 19:47, Tomek CEDRO wrote:
On Mon, Feb 10, 2025 at 10:14 AM Alin Jerpelea <jerpe...@gmail.com> wrote:
Hi all,
I was considering to apply to the Open SSF Best practice badge
https://www.bestpractices.dev/en
this badge should should allow us to show that we use best practices in an
OSS project
Are there any concerns? Let's discuss
Very nice idea! Always good to adhere to best practices and standards :-)

Reply via email to