Stay up to date with the latest developments around the Cyber Resilience Act, EU cybersecurity regulation and compliance best practices.
Germany's "Deutschland-Stack" initiative now requires the Open Document Format (ODF) as the mandatory document standard for all federal agencies. For manufacturers selling CRA-regulated products to German government bodies, this means compliance documentation must be delivered in ODF-compatible formats to integrate with public procurement workflows. CRA-Portal.eu has responded by adding full ODF export for compliance dossiers, making it the first CRA compliance platform to support this format. The feature ensures that technical files, risk assessments and conformity declarations can be exported directly in ODF, removing friction for suppliers navigating both CRA obligations and German digital sovereignty requirements.
The European Commission has published draft guidance on the Cyber Resilience Act, covering key topics including free and open-source software, remote data processing solutions, core functionality, placing on the market of software, and risk assessment. The public consultation is open until March 31, 2026 via the Have Your Say portal.
ENISA has opened applications for an Ad-Hoc Working Group on Security Architecture Engineering and Vulnerability Management. The group will support ENISA's activities in security architecture for digital products and developing EU vulnerability management capacity. Application deadline: April 15, 2026.
The Stan4CRA project is hosting a series of webinars and deep dives on European harmonised standards under development in support of the CRA. The events cover practical implementation guidance for manufacturers, importers and distributors preparing for compliance.
Starting September 11, 2026, manufacturers must report actively exploited vulnerabilities and severe security incidents to ENISA within 24 hours. Organizations should begin preparing their incident reporting procedures now to ensure readiness.
The European Commission has released detailed guidance documents to help economic operators understand and implement CRA requirements. The guidance covers product classification, conformity assessment procedures and SBOM requirements.
Receive monthly updates on CRA developments, regulatory changes and compliance tips directly in your inbox. No spam — only relevant, actionable information.
Our specialists monitor all CRA-related developments and can advise you on what changes mean for your organization.