Answer 20 questions across 5 Cyber Resilience Act compliance areas. Get an instant AI-powered gap analysis with your top priorities — delivered to your inbox.
Based on: Regulation (EU) 2024/2847 — CRA ↗
Get a full AI-powered gap analysis across 5 Cyber Resilience Act areas — with CE marking guidance, vulnerability handling obligations, and priority actions for your product team.
Questions? Contact us
The CRA applies to all products with digital elements placed on the EU market — hardware and software. Your obligations depend on product category and your role in the supply chain.
The CRA distinguishes between default products, important products (Class I and II), and critical products. Your classification determines whether self-assessment suffices or a third-party audit is required.
CRA Annex I sets out essential cybersecurity requirements. Products must be designed, developed, and produced with security built in from the start — not bolted on after.
CRA Annex I Part II requires manufacturers to handle vulnerabilities throughout the product lifecycle and report actively exploited vulnerabilities to ENISA within 24 hours.
Placing a product with digital elements on the EU market requires a technical file, an EU Declaration of Conformity, and CE marking. These must be ready before the product ships.
Enter your work email and we'll send you a full breakdown of your product compliance gaps, top priorities across the 5 CRA areas, and the articles most at risk — plus guidance on next steps.
Our AI is reviewing your answers across 5 CRA compliance areas.
Informational use only. This tool is provided for awareness purposes to help businesses understand their current situation regarding EU regulations. It does not constitute legal, regulatory, or professional advice. Results are indicative only and should not be relied upon as a substitute for qualified legal counsel. Verdaio accepts no liability for decisions made based on this tool’s output. Your inputs are processed ephemerally and are not stored or used for model training.