Cyber Resilience Act
Does the Cyber Resilience Act apply to my product?
LAST REVIEWED
Scope is assessed per product, not per sector or company. A manufacturer with some in-scope and some out-of-scope products must classify each line separately.
- Check whether the product has a data connection, direct or indirect.
- Check whether an equivalent sector-specific regime already covers cybersecurity for that product.
- Classify as default, important or critical, since this determines the conformity assessment route.
Want this answered for your product?
The scope checker gives you a documented read in a few minutes, including a full PDF.