Cisco, Microsoft, Oracle, Red Hat, IBM — with CISA and the NSA at the table — are writing OpenEoX, the OASIS standard for machine-readable end-of-life data. Public comment closes August 13. We read the core schema, filed comments from operator experience, and here's what the draft gets right and what it misses.
What the draft actually is
| Field | Required | Meaning |
|---|---|---|
$schema |
Yes | Schema identifier |
end_of_life |
Yes | Last day the product is supported in any way |
end_of_security_support |
Yes | Last day the vendor commits to security fixes |
last_updated |
Yes | When this record last changed |
general_availability |
No | Launch date |
end_of_sales |
No | Last day the product can be ordered |
What's covered
- What the draft actually is
- What the draft gets right
- What we flagged — from operator scars
- What this means for you
Full guide with every version, risk scores, and live updates: https://endoflife.ai/article-openeox-eol-standard
Top comments (0)