OCCTET
Open Source Compliance Toolkit
CRA Readiness for SMEs & OSS Projects
Our mission is to empower SMEs with accessible, efficient, and secure solutions for Open Source Software (OSS) integration, while strengthening the security posture of Open Source Communities.
The OCCTET project (Open-source Compliance: Comprehensive Techniques and Essential Tools) is an EU-funded initiative aimed at improving cybersecurity and compliance with the Cyber Resilience Act (CRA) for Small and Medium Enterprises (SMEs). The project focuses on creating an Open Source Toolkit to automate the compliance process for Free and Open Source Software (FOSS) used in digital products.
This toolkit is intended to provide a comprehensive suite of tools and resources tailored to the needs of SMEs:
- Compliance Checklist
- Conformity Assessment Specifications
- Automated Evaluation Method and Tool
- Federated Database platform for publishing the results of OSS component assessments allowing contributions from various stakeholders
- Inventory of Automatic Dependency Analysis Tools
- Reporting tool
🎥 Watch the OCCTET Presentation
Evaluate Your Cyber Resilience Readiness in Minutes
Strengthen your organization’s cyber resilience with our quick, easy, and completely free self-assessment tool. The platform helps you instantly measure your compliance and preparedness in line with the EU Cyber Resilience Act (CRA).
Free self-assessment • Confidential processing • Instant next steps
News
Are you our next OCCTET tester?
February, 12, 2026
We are looking for a new testing round of the OCCTET.eu tooling, and we are looking for pioneering SMEs and Open Source Projects to join.
If you want early access, insights, and the chance to shape a new compliance solution, this is for you!
What you will get
Selected SMEs/Open Source Projects will benefit from an automated analysis of their product or software, including:
- complete dependency analysis within supported technologies
- inspection of dependency versions and management practices
- identification of vulnerabilities across all dependencies
- creation of product-specific, standardised SBOMs
- generation of additional compliance and audit artefacts
All at no cost — we simply ask for your feedback throughout the process.
How it works
Your product source code repository will be analyzed by the OCCTET tooling, powered by the open source OSS Review Toolkit and ORT-server, further developed within the OCCTET project. Your data will be processed confidentially in our European ISO27001-certified hosting.
How to show interest
Please fill out the OCCTET Interest Form below stating your interest and a short description of the product you develop. We will get back to you to let you know if you were selected.
👉Please fill out the OCCTET Interest FormOCCTET Community Surpasses 150 SME Members!
December, 4, 2025
We are proud to announce that the OCCTET Community has passed 150 European SMEs who have already joined our network! 🙌✨
The community is a space where SMEs can:
- Test and validate tools and solutions related to the Cyber Resilience Act
- Connect with a network of companies, experts and stakeholders shaping Europe's cybersecurity landscape
- Contribute real feedback to make solutions SME-friendly and future-proof
In a fast-moving digital environment, it's not enough to react, you need to take part in building Europe's secure and resilient future!
Are you our next cybersecurity changemaker? Join us and become part of the community!
👉 Join the OCCTET Community.The Eclipse Foundation Launches OCCTET Project to Speed CRA Compliance
August, 14, 2025
The Eclipse Foundation, one of the world’s largest open source software foundations, today announced the launch of the OCCTET project, a European Commission-funded initiative aimed at helping small and medium-sized enterprises (SMEs) and open source developers navigate compliance with the Cyber Resilience Act (CRA).
The Open Source Compliance: Comprehensive Techniques and Essential Tools (OCCTET) project brings together a consortium of industry leaders, cybersecurity experts, and open source advocates to build free, open source tools that make regulatory compliance more accessible, transparent, and cost-effective.
...
👉 Read the full announcement to learn more about the project’s goals.Participate in OCCTET Survey on CRA and Open Source Compliance
Monday, March 19, 2025
Help us to shape and contribute to an Open-Source driven solution. We greatly appreciate your insights and expertise. The survey should take no more than 10 minutes.
Upcoming Events
DIGITAL SME ISAC Masterclass - Understanding and Producing SBOMs for SMEs
📅 Feb. 19, 2026
CRA Standards Unlocked - EU Tour in Turin
📅 Feb. 24, 2026
Digital Innovation Zone 4.0 Conference
📅 March 26, 2026
Open Community Experience - OCX 2026
📅 April 21-23, 2026
GITEX AI EUROPE 2026
📅 June 30, 2026
it-sa Expo&Congress
📅 Oct 27-29, 2026
Partners
OCCTET represents a major step toward strengthening cybersecurity compliance in Europe, especially for SMEs struggling to navigate CRA requirements. Given our expertise in IoT security and product certification, we see this project as an opportunity to bridge the gap between regulation and real-world implementation. By supporting the development of tools that make compliance more accessible and automated, we contribute to a more secure digital ecosystem while supporting innovation and market growth.

OCCTET allows us to ensure and further develop our service to meet the requirements of the SME sector, as opposed to large organizations. SMEs are by far the largest users of software, whether as such or in devices. Further, we expect to partner with other OCCTET members to offer together holistic CRA compliance services, where Double Open's role is in automated analysis and management, and it complements by services of others.

Get Engaged
Help us build a collaborative, open-source–driven solution that empowers both SMEs and open-source communities.
Be part of the OCCTET journey!
Register to our newsletter and stay updated on progress, opportunities, and community events. (if you can’t see registration form please contact us directly)













