Loading…
7-9 October, 2026
Prague, Czechia
View More Details & Registration
Important Note: Timing of sessions and room locations are subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit Europe 2026 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.



Venue: Chamber Hall (Floor 3) clear filter
Wednesday, October 7
 

11:20 CEST

Open Source Security as the Foundation of European Sovereignty - Madalin Neag & Mirko Boehm, The Linux Foundation
Wednesday October 7, 2026 11:20 - 11:40 CEST
European digital policy is often discussed through frameworks such as NIS2, the CRA, DORA, the CSA, and the broader Tech Sovereignty agenda. Yet these initiatives share a common objective: securing the software supply chains underpinning Europe’s critical digital infrastructure.

OSS is the foundation of modern technology stacks, from cloud services and critical infrastructure to financial systems and AI. It is also inherently global, developed and maintained by a distributed ecosystem across borders. As reliance on OSS grows, the challenge is no longer whether it is used, but how it is integrated, governed, and secured throughout its lifecycle within this global dependency network.

This session explores software supply chain security as the common thread across Europe’s cyber and digital policy landscape. It examines how regulations converge on transparency, dependency management, vulnerability handling, provenance, and secure development practices.

Finally, it connects these developments to EU Tech Sovereignty goals, arguing that secure and standardized consumption of globally developed open source is key to Europe’s resilience, competitiveness, and technological sovereignty.
Speakers
avatar for Mirko Boehm

Mirko Boehm

Community Development, Linux Foundation Europe

avatar for Madalin Neag

Madalin Neag

EU Policy Advisor, OpenSSF/The Linux Foundation
Madalin is the EU Policy Advisor at OpenSSF, working at the intersection of cybersecurity, open source software, and European technology policy. He helps connect open source technical communities and policymakers, supporting the development of practical regulatory frameworks, aligning... Read More →
Wednesday October 7, 2026 11:20 - 11:40 CEST
Chamber Hall (Floor 3)

11:40 CEST

ORBIT Launchpad: Building the Due Diligence Bridge Between Manufacturers and Open Source - Nicole Bates-Callaghan, Microsoft & Sarah Evans, Dell Technologies
Wednesday October 7, 2026 11:40 - 12:00 CEST
The EU Cyber Resilience Act requires manufacturers to exercise due diligence when integrating open source components — but what does that actually look like in practice? ORBIT Launchpad is an OpenSSF initiative building the catalogs, criteria, and tooling that help manufacturers demonstrate they've done the work.

This talk covers how ORBIT Launchpad bridges the gap between regulatory intent and operational reality. We'll share how the CRAB-FOSC and CRAB-FOMA catalogs translate CRA obligations into actionable criteria that manufacturers can evaluate against, how we're aligning with complementary efforts across foundations to avoid duplication, and what the open source ecosystem needs to provide so that due diligence doesn't become an unfunded mandate on maintainers.

Attendees will leave with a practical understanding of: what due diligence means for manufacturers consuming open source under the CRA; how ORBIT Launchpad's open catalogs and tooling reduce that burden; and how standards bodies and open source communities can work together to make compliance achievable.
Speakers
avatar for Nicole B

Nicole B

Principal Technical Program Manager, Microsoft
Nicole Bates is a Principal Technical Program Manager on Microsoft's Azure OCTO Open Source Ecosystem team, where she focuses on open source supply chain security strategy. She co-chairs the IETF SCITT Working Group, ORBIT Launchpad SIG, and Supply Chain Integrity Working Group at... Read More →
avatar for Sarah Evans

Sarah Evans

Distinguished Engineer, Dell Technologies
Sarah Evans is a Distinguished Engineer and security applied research program lead at Dell Technologies, driving technical innovation for secure business outcomes. She is a recognized leader focusing on extending secure operations and supply chain principles to securing AI and agentic... Read More →
Wednesday October 7, 2026 11:40 - 12:00 CEST
Chamber Hall (Floor 3)

13:30 CEST

Presentation From the European Commission Open Source Observatory (OSOR) - Éléonore Daxhelet, OpenForum Europe
Wednesday October 7, 2026 13:30 - 13:50 CEST
This presentation gives an overview of the European Commission’s Open Source Observatory’s (OSOR) activities and latest Paper on Progress and Trends. The report examines how open source software has evolved within public administrations, based on the country reports published in 2025. It covers 18 EU member states and includes for the first time five candidate countries from the Western Balkan region, namely Albania, Bosnia and Herzegovina, Kosovo, Serbia and North Macedonia. The session provides insights into the state of open source adoption and regulation in Europe, with a particular focus on findings from the Balkan countries, providing insights into how EU integration shapes digital policy in candidate countries.
Speakers
avatar for Éléonore Daxhelet

Éléonore Daxhelet

Policy Analyst, OpenForum Europe
Éléonore Daxhelet is a policy analyst at OpenForum Europe, where she has worked on the Open Source Observatory (OSOR) since July 2025. She holds a Master's degree in Political Science from the Free University of Brussels and a Master's in Security, Intelligence and Strategic Studies... Read More →
Wednesday October 7, 2026 13:30 - 13:50 CEST
Chamber Hall (Floor 3)

13:50 CEST

The Japan-Type OSS Model: Native Species, Seeding Strategy, and Rules as Code - Kazuki Imamura, IPA: Innovation Platform Agency, Japan
Wednesday October 7, 2026 13:50 - 14:10 CEST
Open source is now social infrastructure, rarely recognized until it fails. To shape a forward-looking strategy, we must know where we stand. In 2025, IPA ran two foundational surveys: a software-trends survey of domestic firms, and a GitHub study of 30,298 public-sector repositories across seven countries.

The findings show modest but clear momentum. Corporate OSS policy adoption rose from 32.0% to 36.7% (normalized), and vague "don't know" answers gave way to concrete work on security and talent development—a shift from awareness to practice. Japan's government OSS repositories rank alongside Germany, Singapore, and Estonia, with GIS and geospatial strengths grown from frontline needs—now a uniquely AI-ready foundation.

We propose a "Japan-Type OSS Model" with three axes: cultivating "native species" OSS rooted in real needs; a "seeding strategy" where the public sector publishes building blocks industry scales into services; and "Rules as Code," making institutions machine-readable for trustworthy AI.

This session shares what one country learned from mapping its terrain—and calls for cross-border collaboration on how open source will underpin digital sovereignty worldwide.
Speakers
avatar for Kazuki Imamura

Kazuki Imamura

Open Source Promotion, IPA: Innovation Platform Agency, Japan
Born in 1974. I started my current job in March 2024. Prior to that, I worked in web development for 13 years. I started activities as a civic tech contributor in 2018.
Wednesday October 7, 2026 13:50 - 14:10 CEST
Chamber Hall (Floor 3)

14:25 CEST

Panel: Having an SBOM Is Not Enough. Introducing the OpenChain SBOM Document Quality Guide - Yoshiyuki Ito & Tsukasa Yobo, Renesas Electronics; Kiyoshi Owada, Socionext Inc.; Yumi Tomita, Cybertrust Japan Co., Ltd.; Takashi Ninjouji, Honda Motor Co., Ltd.
Wednesday October 7, 2026 14:25 - 15:05 CEST
SBOM adoption is growing, driven by global regulation such as the EU Cyber Resilience Act(CRA). Today’s software supply chains are complex and global, involving many organizations, tools, and layers of dependencies. In this environment, SBOMs need to accurately share software component information without confusion.

A high‑quality SBOM enables precise, unambiguous information exchange between organizations, minimizing gaps and misinterpretation.

To achieve this, the OpenChain SBOM Working Group released a draft SBOM Document Quality Guide in April 2026 on the foundation of the Telco SBOM Guide. Global public comments have been incorporated into the official version released at this session. It defines what should be contained, how to evaluate, and how to exchange between organizations. 

In this panel, we will discuss:
- why each of us engaged in this work
- the distinct SBOM quality challenges from our own vantage points
- how we actively utilize the guide to address industry-specific quality hurdles
We hope this sparks dialogue with many addressing Cyber Resilience Act and other security regulations 
Speakers
avatar for Takashi Ninjouji

Takashi Ninjouji

Chief Engineer, Honda R&D Co., Ltd.
Takashi Ninjouji is a Chief Engineer at Honda Motor Co., Ltd., with a focus on Software-Defined Vehicles (SDV). He is a manager of the Open Source Program Office (OSPO). His interests also include AI-assisted engineering automation.
avatar for Yoshiyuki Ito

Yoshiyuki Ito

Principal Specialist, Renesas Electronics
Working on Linux and open-source software technology for various presales efforts. Currently serving as Deputy Co-Chair of the SBOM Sub-Working Group of the Community “Open Chain Project” on behalf of Renesas. Worked as a software engineer for NEC since 1993 and with Renesas on... Read More →
avatar for Kiyoshi Owada

Kiyoshi Owada

Manager (Software Management Promotion), Socionext Inc.
- Joined Matsushita Electric Industrial Co., Ltd. (Currently Panasonic) in 1988 and moved to Socionext Inc. in 2015.
- Participated in the development of digital home appliances as uITRON and Linux Engineer
- Worked on establishing the CE Linux Forum
- OpenChain JapanWG Planning... Read More →
avatar for Tsukasa Yobo

Tsukasa Yobo

senior software engineer, Renesas electronics corp.

avatar for Yumi Tomita

Yumi Tomita

Field marketer, Cybertrust Japan Co., Ltd.
Yumi Tomita is a Marketer in Cybertrust Japan. She works to utilize SBOM for vulnerability management. She is a member of the OpenChain Project Japan Working Group.
Wednesday October 7, 2026 14:25 - 15:05 CEST
Chamber Hall (Floor 3)

15:35 CEST

The EU Cyber Resilience Act and Open Source: What Product Vendors Must Do - Timo Perala & Gergely Csatari, Nokia
Wednesday October 7, 2026 15:35 - 16:15 CEST

The EU Cyber Resilience Act (CRA) is fundamentally changing how companies develop, secure, and bring products to market in the European Union. It introduces comprehensive security requirements across the entire software development lifecycle—including how open source components are selected, integrated, and maintained.
Timo and Gergely provide a practitioner-focused view of what CRA means in practice, with a particular emphasis on open source.

In their talk, they examine the CRA from a product vendor perspective, with focus on open source. They will break down the practical implications of the regulation across three key areas: open source consumption, vulnerability management, and open source stewardship. They will also highlight where the regulation leaves room for interpretation and share insights from ongoing industry discussions that are shaping emerging best practices.
Speakers
avatar for Timo Perala

Timo Perala

Head of Open Source Service & Network Automation, Nokia
Timo has over 25 years of experience in network systems, systems architecture research, new business incubation, to mobile network and operations systems standardization. In his current role Timo is with Nokia OSPO, responisble for Automation related open source projects and Regulatory... Read More →
avatar for Gergely Csatari

Gergely Csatari

Senior Open Source Specialist, Nokia
Working in the telecom industry in the last two decades it was possible for Gergely to see the evolution from vendor specific hardware to virtualisation and cloud and a to cloud native. Currently Gergely is part of the OSPO team of Nokia CTO which is reponsible for open source. In... Read More →
Wednesday October 7, 2026 15:35 - 16:15 CEST
Chamber Hall (Floor 3)

16:30 CEST

Challenges Using an IEC Standard in Open Source - Nico Rikken, Alliander
Wednesday October 7, 2026 16:30 - 16:50 CEST
The electrical energy sector can largely be defined by the IEC standards that ensure compatibility and conformity. In this way IEC standards serve our industry very well, both in the physical and digital realm. Although the open source projects and IEC share a similar goal of compatibility and innovation, in practice they conflict with one another. This has to do with the way in which IEC standards are created, licensed and distributed.

In this presentation Nico will share his experiences in dealing with IEC licenses from the perspective of an OSPO supporting open source development. This will highlight various issues, big and small, that hinder open source development. The presentation will also gather insights from the standards group in the LF Energy community group. By presenting this constructive assessment Nico hopes to foster discussion and encourage improvement of the situation. Much of the content will carry over to other closed standards.
Speakers
avatar for Nico Rikken

Nico Rikken

Solution Architect, OSPO member, Alliander
Nico Rikken has a track record in maximizing the potential of Free and Open Source Software in the energy sector and in the Netherlands. As Open Source Ambassador at grid operator Alliander he helps make open source project participation successful and ensure control over the company... Read More →
Wednesday October 7, 2026 16:30 - 16:50 CEST
Chamber Hall (Floor 3)

16:50 CEST

Rebuilding Mini-Grid Metering as Open Infrastructure - Joscha Winzer & Vivien Barnier, EnAccess Foundation
Wednesday October 7, 2026 16:50 - 17:10 CEST
In the past 9 months, the two largest smart-metering providers serving rural mini-grids entered insolvency or severe distress, putting ~250,000 meters in 30+ countries at risk of losing billing, payment, and remote management, and threatening to leave over a million people, plus clinics and schools, in the dark. The cause was structural and familiar to anyone in open source: vertically integrated proprietary stacks, cloud lock-in, and no "supplier of last resort" for critical infrastructure.

This talk is a field report on the open-source response: an alliance of competitors, NGOs, and operators building an unbundled, multi-vendor platform on Digital Public Good principles. We cover the architecture (open APIs, multi-OEM interoperability, code and key release tied to bridge funding), the governance model for an asset that must outlive any single contributor, and how critical open infrastructure can be funded sustainably.

We close with concrete contribution paths: protocol work, hardware integrations (DLMS/COSEM, MQTT, STS), security review, and governance participation.
Speakers
avatar for Vivien Barnier

Vivien Barnier

Managing Direktor, EnAccess Foundation
Vivien has 9+ years of experience in the renewable energy sector. His expertise lies in technologies, business model development, operation, and regulation for Distributed Energy Systems in underserved areas. He has advised development banks, governments, and investors on setting... Read More →
avatar for Joscha Winzer

Joscha Winzer

Head of Technology, EnAccess Foundation
Joscha Winzer is a battery and energy systems engineer with 10+ years' experience designing, certifying, and industrializing electrical energy systems, including the world's first second-life EV battery storage products. And co-founded SunZilla, an early open-source renewable battery... Read More →
Wednesday October 7, 2026 16:50 - 17:10 CEST
Chamber Hall (Floor 3)

17:25 CEST

Rethinking Wireless Networking With Synchronous Transmissions: The OpenSTX Standard - Davide Vecchia, University of Trento
Wednesday October 7, 2026 17:25 - 17:45 CEST
Synchronous Transmission (STX) techniques have matured over a decade of research, enabling a new approach to low-power wireless networking. STX protocols exploit floods that, unlike traditional methods, purposefully embrace on-air collisions via tightly synchronized transmissions. Research repeatedly shows order-of-magnitude gains in reliability, and reduced latency and energy use over conventional approaches.

Standardization is now needed to make STX industry-ready. The OpenSTX Foundation aims to define an open standard from radio interface to application layer, targeting IEEE 802.15.4, Bluetooth, and UWB.

OpenSTX excels where routing-based protocols fall short: network-wide flooding completes in milliseconds with bounded latency; end-to-end reliability is above 99.9% in dense, interference-prone settings; and the absence of routing tables and topology maintenance makes networks inherently tolerant to failure and mobility. Radio duty cycling extends battery life, and network-wide time synchronization is a free by-product.

This session overviews STX techniques, showcases OpenSTX primitives across a layered architecture, presents the roadmap, and describes how to get involved.
Speakers
avatar for Davide Vecchia

Davide Vecchia

Technical Chair, OpenSTX Foundation, University of Trento
Davide Vecchia is a Post-Doctoral Researcher at the University of Trento, where he earned his M.Sc. (2018) and Ph.D. (2022). His research focuses on ultra-wideband (UWB) communication and localization in large-scale multihop networks. Within the OpenSTX Foundation, a Linux Foundation... Read More →
Wednesday October 7, 2026 17:25 - 17:45 CEST
Chamber Hall (Floor 3)

17:45 CEST

Open Quantum Safe: Post-Quantum Software Research in the Era of the First PQC Standards - Rodrigo Martín, Indra
Wednesday October 7, 2026 17:45 - 18:05 CEST
The Open Quantum Safe (OQS) project was founded with the mission of supporting the transition to Post-Quantum Cryptography. On its way, it became one of the most important open-source post-quantum cryptographic organizations. The subsequent publication and adoption of the first PQ standards by major cryptographic projects helps the cryptographic community in the adoption of this required type of cryptography. The mission of the OQS organization remains being at the forefront of PQC research. This talk provides an update of what these efforts look like in the era of the first PQ standards. It will include lessons learned along the way, challenges encountered when handling a PQ Open Source project and future directions, such as: 

1) Addition of new PQ schemes being considered for standardization or relevant to the PQ cryptographic community (e.g. NIST on-ramp signature schemes)

2) Inclusion of new functionalities like: new hybrids or constant-time analysis.
Speakers
avatar for Rodrigo Martín

Rodrigo Martín

Senior Cryptography Researcher, Indra
Rodrigo is a Senior Cryptography Researcher at Indra. He is also an Industrial PhD candidate, focused on the algebraic aspects of PQC, as well as PQC migrations. His work experience is the research, development and secure deployment of cryptography in real applications and protocols... Read More →
Wednesday October 7, 2026 17:45 - 18:05 CEST
Chamber Hall (Floor 3)
 
Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.