CRA
EU Cyber Resilience Act · European Commission / European Parliament · Official site
EU regulation requiring cybersecurity-by-design for products with digital elements sold in the EU, entered into force December 2024. Vulnerability reporting obligations start September 2026; main product security obligations apply December 2027.
Timeline
As of 11 September 2026, Article 14 of the Cyber Resilience Act (EU Regulation 2024/2847) becomes applicable in the EU, establishing horizontal cybersecurity requirements for products with digital el…
The European Commission proposes a new Public Procurement Act that consolidates the three 2014 procurement directives (2014/23/EU, 2014/24/EU, and 2014/25/EU) into a single regulation and amends mult…
CIS and SAFECode have published version 1.1 of Secure by Design: A Guide to Assessing Software Security Practices, updating the original framework to address evolving software development practices a…
Regulation (EU) 2025/327 of the European Parliament and of the Council was adopted on 11 February 2025 to establish the European Health Data Space framework, with entry into force on 25 March 2025. T…
Monitoring
Watched by 3 official sources. Watching since 7 September 2026. Last checked 11 minutes ago.