From working out whether your product is in scope, to self-assessing Annex I, to an AI gap assessment and audit-ready reports — with all of your data processed privately.
▶ Request a live demo →Coverage across every product, open reporting deadlines, SBOM vulnerabilities and an AI gap assessment — one guided workflow, with your data kept private.
The CRA (Regulation (EU) 2024/2847) sets mandatory cybersecurity requirements for almost any product with digital elements placed on the EU market — hardware or software that connects to a device or network. Non-compliance can mean fines and market withdrawal.
The regulation is law; the compliance clock starts ticking.
Actively exploited vulnerabilities & severe incidents must be reported (24h / 72h).
Full requirements, conformity assessment and CE marking become mandatory.
Compliance shouldn't need a team of consultants. We make it easy, fast and complete.
Plain-language questions replace dense legal text. Answer a short wizard and get a clear verdict.
Classify a product in minutes, not weeks. Instant risk-class and conformity-route guidance.
From scope to Annex I self-assessment to readiness scoring — the whole journey in one place.
Purpose-built for the Cyber Resilience Act.
Determine if your product is in scope and its class — default, important (Annex III, I & II) or critical (Annex IV).
Rate every essential and vulnerability-handling requirement, capture evidence, and see your gaps.
A live readiness percentage per product so you always know how close you are.
The right conformity-assessment path (Module A, B+C, H or certification) for your risk class.
Save assessments per product and revisit them as your portfolio grows.
Secure accounts and private assessments — built for confidentiality.
Four steps from uncertainty to audit-ready.
Answer a short wizard to find your scope and risk class.
Work through the Annex I requirements and record evidence.
See your readiness score and prioritise the gaps that matter.
Keep documentation current as products and the regulation evolve.
Run a guided CRA scope & risk check, then go deeper with the Annex I self-assessment. Talk to us for a tailored walkthrough and access to the full platform.
Detailed pricing available on request.
What early users say about getting CRA-ready with ComplyPS.
“We went from 'where do we even start' to a clear risk class and gap list in an afternoon.”
“The Annex I self-assessment finally made the essential requirements concrete for our engineers.”
“A readiness percentage we can show leadership — that alone was worth it.”
Illustrative testimonials shown as placeholders.
CRA Insights
Nine plain-English articles — scope, risk classes, Annex I, SBOMs, reporting, CVD and more — written from the regulation and security best practice.
Browse all 9 articlesOpen ComplyCRA now, or book a demo and we'll walk you through the whole platform.
Tell us a bit about you and we'll be in touch to arrange a walkthrough.