Cyber Resilience Act

3 08, 2026

EU issues CRA guidance (2)

By |2026-08-07T16:13:37+00:00August 3rd, 2026|Cyber Resilience Act, Uncategorized|

EU issues CRA guidance (Part 2 – from the Commission)

On 27th July 2026, the European Commission issued for the first time official guidance on how the CRA should be “interpreted and implemented”.

While some of the advice simply confirms what should be evident from the regulation, there is valuable clarification of items previously considered open to […]

17 02, 2025

Do Products Need to Implement Secure Boot in Order to Achieve CRA Compliance?

By |2025-03-04T17:36:41+00:00February 17th, 2025|Cyber Resilience Act|

This is a difficult question to answer, because while the CRA says (in Annex I Part I (2)):

On the basis of the cybersecurity risk assessment referred to in Article 13(2) and where applicable, products with digital elements shall:

(f) protect the integrity of stored … commands, programs and configuration…

…it doesn’t actually mention secure […]

Go to Top