Contributing to the Open CDC Framework¶
Thank you for helping European teams defend better. Contributions of all sizes are welcome.
What we're especially looking for¶
- National annexes — NIS2 transposition specifics, national CSIRT contacts and reporting portals, per member state (
docs/annexes/annex-<ISO country code>.md). - Translations — the framework aims to be available in EU languages (
i18n/<lang>/). - Templates & playbooks — additional scenario playbooks, report templates for statutory notifications.
- Corrections — factual, regulatory, or attribution fixes (high priority — open an issue immediately).
- Field feedback — did the maturity criteria match reality in your assessment? Open a discussion.
Ground rules¶
- Vendor neutrality: no product names in normative documents. Tooling examples belong in clearly marked non-normative appendices and must include open source options where they exist.
- Credit everything: any content derived from another work must be attributed in the document's Sources section and in
docs/19-references.md. Respect the source's license. - No confidential material: never contribute internal documents, real incident data, or client information.
- Regulatory content: cite the EUR-Lex ELI link for any legal claim, and mark interpretation clearly as interpretation.
- Language: contributions in English for core docs; translations maintained separately.
How to contribute¶
- Open an issue describing the change (use the templates).
- For text changes: fork → branch (
docs/<topic>orfix/<topic>) → pull request referencing the issue. - One logical change per PR; keep the document structure (Objective / Capabilities / CIA mapping / Maturity / EU hooks / External dependencies / Sources) intact for function docs.
- A maintainer will review for accuracy, neutrality, and attribution before merging.
Licensing of contributions¶
By contributing, you agree that your contribution is licensed under CC BY 4.0, and you confirm you have the right to submit it.
Code of Conduct¶
Be professional and constructive. Disagreement about content is welcome; disrespect toward people is not. Report issues to the maintainers.