Independent guide to Regulation (EU) 2024/2847 · Status: in force
Tools

The CRA toolbox

Free, practical tools to work through the Regulation: check whether the Act applies, map every requirement, estimate the cost of compliance, and keep your vulnerability handling on track. No sign-up.

Where to start

A suggested order

There is no single right sequence, but this is a sensible path from "does it apply?" to a signed declaration.

1CRA Fast Check

Start here. Confirm whether the Act applies to your product and its likely class.

Open →
2Classification finder

Pin the class. Match the Annex III and IV categories to confirm default, important or critical.

Open →
3Cost calculator

Size the effort. Get an indicative one-off and annual cost for your class and current readiness.

Open →
4Vulnerability Analyzer

Build the foundation. Generate and screen your SBOM and stand up vulnerability monitoring.

Open →
5Support-period planner

Set the clock. Work out your support period and flag components that reach End-of-Life too soon.

Open →
6Compliance matrix

Work through everything. Track every Annex I and VII obligation to done, and export the checklist.

Open →
7DoC generator

Finish the loop. Once conformity is met, draw up your EU Declaration of Conformity.

Open →
For tool providers

Built a CRA tool? Get it listed.

We want this page to be the most useful set of CRA tools on the web. If your company offers a tool that helps manufacturers, developers, importers or distributors comply with the Cyber Resilience Act (free or paid), submit it for review and possible listing here.

Submit your tool →Opens a short form · no account needed