An EU regulation that sets cybersecurity requirements for products with digital elements across their entire lifecycle.
The Cyber Resilience Act introduces mandatory cybersecurity requirements for hardware and software products placed on the EU market. Manufacturers must design products securely, handle vulnerabilities, and provide security updates for a defined support period.
It also adds obligations to report actively exploited vulnerabilities and severe incidents. The CRA shifts responsibility for product security onto manufacturers rather than leaving it to users.