Vellum Search Regulations coveredPricingAnalysis ↗ Sign in

EU Cyber Resilience Act — the verified record, live

The Cyber Resilience Act (Regulation (EU) 2024/2847) introduces horizontal cybersecurity requirements for products with digital elements sold in the EU — secure-by-design obligations, vulnerability handling and reporting duties for manufacturers. Main obligations phase in through 2026–2027, with reporting duties arriving first.

Every document below comes from the body that published it — regulators, courts, parliaments, official registers — with its true publication date and a link to the primary source.

as of 2026-07-22 · refreshed as new records land

2
Sources scoped
2024-11-20
Earliest
2026-07-17
Most recent

Latest developments

EU — ENISA (Cyber Resilience Act) · 2026-07-17

Single Reporting Platform (SRP)

EU — European Commission (Cyber Resilience Act) · 2026-06-22

Cyber Resilience Act

EU — CRA Normative Texts (EUR-Lex) · 2024-11-20

Regulation (EU) 2024/2847 — Cyber Resilience Act

Sources covered

EU — ENISA (Cyber Resilience Act)last update 2026-07-17
EU — European Commission (Cyber Resilience Act)last update 2026-06-22
EU — CRA Normative Texts (EUR-Lex)last update 2024-11-20
Search the full EU Cyber Resilience Act record — free.

Free forever — 20 searches a day, and your first 14 days include full access. No card needed. The live dashboard, alerts, summaries and exports come with a plan from £49.99/mo.

Start searching free →