{
  "node_id": "eu-cyber-resilience-act-2024-essential-requirements",
  "title": "Regulation (EU) 2024/2847 on horizontal cybersecurity requirements for products with digital elements (Cyber Resilience Act)",
  "domain": "Cybersecurity",
  "version": "1.0.1",
  "last_updated": "2026-07-01",
  "bluf": "The EU Cyber Resilience Act (CRA) mandates that manufacturers of hardware and software products ensure cybersecurity by design and default, manage vulnerabilities throughout the product lifecycle, and provide security support for a defined period. Compliance, demonstrated via CE marking, is based on the essential security and vulnerability handling requirements detailed in Annex I of the regulation.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "ai_overlay_2026"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "nis2-supply-chain-security-article-22",
    "eu-cybersecurity-act-2019",
    "iso-27001-2022",
    "pci-dss-v4-requirement-6"
  ],
  "primary_citations_count": 7
}