Dear CRA Network,
We are writing with some updates concerning the implementation of the Cyber Resilience Act.
Today, the Commission launched a new website dedicated to CRA implementation: Cyber Resilience Act - Implementation. In there, you will
find a lot of useful material, including a
summary of the legislation and a comprehensive FAQ document addressing many recurring questions, which can be downloaded
here. It also features, among others, a section dedicated to
micro, small and medium-sized enterprises, with a list of tools to support their CRA compliance funded via the Digital Europe Programme.
Furthermore, please be informed that the Commission recently published an implementing regulation on the technical description of important and critical products:
Implementing regulation - EU - 2025/2392 - EN - EUR-Lex. In accordance with Articles 7(1) and 8(1) of the CRA, when a product with digital elements has the core functionality of a product category set out in Annexes III and IV (with their technical descriptions
as specified in the implementing regulation), it is considered to be an important or critical product and is subject to the corresponding conformity assessment procedures set out in Article 32.
Finally, as previously announced, today we held an event on the implementation of the CRA -
CRAzy About Product Cybersecurity: From Compliance to Confidence. The event recording is also available
here.
We trust you find this information useful, and please do not hesitate to disseminate it to interested stakeholders.
Best wishes,
CRA Team
Have you been forwarded this email? Sign up
here.
You no longer wish to receive these updates? Please reply to this email and we will delete you from our database.