{
  "node_id": "psd2-directive-article-95-major-incident-reporting",
  "title": "DIRECTIVE (EU) 2015/2366 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of 25 November 2015 on payment services in the internal market - Article 95",
  "domain": "Banking & Global Finance",
  "version": "1.0.0",
  "last_updated": "2026-05-06",
  "bluf": "Payment service providers must establish and maintain an incident management process to detect, manage, and report major operational or security incidents to their competent authority without undue delay and, where applicable, to affected users.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "ai_overlay_2026"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "gdpr-article-35-dpia",
    "gdpr-article-37-dpo",
    "eu-ai-act-article-9-risk-management-system"
  ],
  "primary_citations_count": 6
}