Technology

The Linux community clashes with new state rules

Politicians with little understanding of technology are putting free software at risk and unsettling open-source communities with misguided regulations. Any moderately competent Linux user can bypass them with ease.

Tux, the Linux mascot, is not happy with the regulations in California. Photo: Getty Images/AI

Tux, the Linux mascot, is not happy with the regulations in California. Photo: Getty Images/AI

Sacramento. The US states of California and Colorado have recently passed legislation requiring operating system providers to implement an age verification mechanism. The system is intended to take effect as soon as a user creates an account on a device. In California, lawmakers have gone a step further: the system must also cross-check registration data against public databases. The law has not yet been fully enacted, but Governor Gavin Newsom has already announced further amendments and expansions.

Where such a system is developed by a manufacturer that is a natural or legal person, compliance can be enforced. Companies such as Microsoft, Apple or Google, for Android, can be compelled to integrate such checks into their operating systems. The situation is entirely different for open-source systems such as Linux. The Californian law refers to an ‘operating system provider’ that is to be held responsible.

But who would that be in the case of Linux? The system is built on open collaboration. Although it was initiated by Linus Torvalds and first released on 17 September 1991 as version 0.01, the kernel – the core of the operating system – is now maintained by a global community. Anyone with the necessary expertise can, may and is encouraged to contribute. The source code is freely available, and thousands of developers and companies are involved in improving it.

Linux has evolved into various distributions, each developed independently. A distribution is a collection of software components delivered and maintained as a complete package. For distributions such as Red Hat, Canonical or SUSE – all Linux-based systems – responsibility can still be identified to some extent. Other projects, however, are purely community-driven. Debian or Linux Mint have no legal entity acting as a manufacturer. The case of Debian makes that clear: in the United States, there is no legal person, neither a foundation under US law nor any other entity, that could be held accountable for the distribution.

Welcome to the comments section of the Štandard daily. Please take note of our guidelines, comments are moderated by us. You can contact the moderators at support@statement.com.

Participate in the discussion

Comments are available to subscribers only. If you'd like to join the discussion, choose a subscription starting at €6.72 per month.

All comments 0

    Register

    Comments are available to registered users only. If you'd like to join the discussion, register here.