Cyber Resilience Act resources
Page 2 of 8
Showing resources 16 to 30 of 111.
Which Products Are Covered by the Cyber Resilience Act?
A practical guide to Cyber Resilience Act product scope, including software, hardware, components, remote data processing, market availability, data connections, exclusions and product classification.
READ GUIDE CRA scope / 01What Is a Product With Digital Elements?
Understand the Cyber Resilience Act definition of a product with digital elements, including software, hardware, components, remote data processing solutions and the connection requirement.
READ GUIDE CRA scope / 02Does the CRA Apply to Software?
Learn when software can fall within the Cyber Resilience Act, including downloadable applications, operating systems, software components, remote functionality, commercial distribution and open-source considerations.
READ GUIDE CRA scope / 03Does the CRA Apply to Hardware?
Learn when hardware falls within the Cyber Resilience Act, including connected devices, hardware components, embedded software, network connectivity, market availability and product classification.
READ GUIDE CRA scope / 04Does the CRA Apply to Firmware?
Understand how firmware is treated under the Cyber Resilience Act, including firmware embedded in hardware, separately marketed firmware, updates, product boundaries and manufacturer responsibilities.
READ GUIDE CRA scope / 05When Does the CRA Apply to SaaS?
Understand when SaaS and cloud-hosted functionality can fall within the Cyber Resilience Act, including software products, remote data processing solutions, APIs, databases and manufacturer-controlled remote functions.
READ GUIDE CRA scope / 06What Is a Remote Data Processing Solution Under the CRA?
Understand the Cyber Resilience Act definition of a remote data processing solution, including manufacturer-controlled APIs, databases, cloud processing, necessary remote functions and the limits of the product boundary.
READ GUIDE CRA scope / 07Does the CRA Apply to Mobile Apps?
Learn when mobile applications fall within the Cyber Resilience Act, including app distribution, device and network connections, APIs, remote databases, backend services and open-source considerations.
READ GUIDE CRA scope / 08Does the CRA Apply to Desktop Software?
Understand when desktop applications can fall within the Cyber Resilience Act, including local software, downloads, network connections, update services, licensing servers, remote functions and commercial distribution.
READ GUIDE CRA scope / 09Does the CRA Apply to Embedded Software?
Understand how the Cyber Resilience Act applies to embedded software, including software inside hardware products, firmware, product boundaries, separately marketed components, updates and cybersecurity risk assessment.
READ GUIDE CRA scope / 10Does the CRA Apply to Software Components Sold Separately?
Learn how the Cyber Resilience Act treats software components placed on the market separately, including commercial libraries, modules, dependencies, manufacturer responsibilities and open-source distinctions.
READ GUIDE CRA scope / 11Does the CRA Apply to APIs?
Understand how APIs fit within Cyber Resilience Act scope, including APIs as parts of software products, manufacturer-controlled remote APIs, separately marketed API software and remote data processing solutions.
READ GUIDE CRA scope / 12Does the CRA Apply to Connected IoT Products?
Learn how the Cyber Resilience Act applies to connected IoT products, including connected hardware, embedded software, direct and indirect data connections, cloud functionality, components and product classification.
READ GUIDE CRA scope / 13Does the CRA Apply to Smart-Home Devices?
Understand how the Cyber Resilience Act applies to smart-home devices, including connected appliances, security cameras, smart locks, alarm systems, virtual assistants, cloud control and important-product classification.
READ GUIDE CRA scope / 14Does the CRA Apply to Custom Software?
Understand when custom or bespoke software can fall within the Cyber Resilience Act, including one-customer products, commercial supply, manufacturer status, individual-unit products and the distinction from purely internal software.
READ GUIDE