My favourites

CHAPTER I – General Provisions (Art. 1-12)

Art. 1 CRA – Subject matter arrow_right_alt

Art. 2 CRA – Scope arrow_right_alt

Art. 3 CRA – Definitions arrow_right_alt

Art. 4 CRA – Free movement arrow_right_alt

Art. 5 CRA – Procurement or use of products with digital elements arrow_right_alt

Applicable: 11 December 2027

  1. This Regulation shall not prevent Member States from subjecting products with digital elements to additional cybersecurity requirements for the procurement or use of those products for specific purposes, including where those products are procured or used for national security or defence purposes, provided that such requirements are consistent with Member States’ obligations laid down in Union law and that they are necessary and proportionate for the achievement of those purposes.
  2. Without prejudice to Directives 2014/24/EU and 2014/25/EU, where products with digital elements that fall within the scope of this Regulation are procured, Member States shall ensure that compliance with the essential cybersecurity requirements set out in Annex I to this Regulation, including the manufacturers’ ability to handle vulnerabilities effectively, are taken into consideration in the procurement process.

Art. 6 CRA – Requirements for products with digital elements arrow_right_alt

Art. 7 CRA – Important products with digital elements arrow_right_alt

Art. 8 CRA – Critical products with digital elements arrow_right_alt

Art. 9 CRA – Stakeholder consultation arrow_right_alt

Art. 10 CRA – Enhancing skills in a cyber resilient digital environment arrow_right_alt

Art. 11 CRA – General product safety arrow_right_alt

Art. 12 CRA – High-risk AI systems arrow_right_alt