THE CYBER RESILIENCE ACT - ANNEX

▶ Commission Guidance on REGULATION (EU) 2024/2847

REGULATION (EU) 2024/2847

ACHIEVING COMPLIANCE

I am an IoT device manufacturer

IoT device manufacturers are first in line when it comes to compliance.

Read our practical guides on what you have to do, how much time you have to comply and what the legal ramifications of non-compliance are.

I am a software company

While free and open-source software, for now,  does not fall under the purview of the Cyber Resilience Act, commercial software that include remote data processing solutions will need to comply with the Act.

Read our practical guides to understand what you need to do.

I import / distribute/ resell

IoT device importers, distributors and resellers have many requirements under the CRA and in some circumstances can even be considered as manufacturers themselves.

Our guides detail these stakeholders’ responsibilities and liabilities.