CryptoSpiel.com
No Result
View All Result
  • Home
  • Live Crypto Prices
  • Live ICO
  • Exchange
  • Crypto News
  • Bitcoin
  • Altcoins
  • Blockchain
  • Regulations
  • Trading
  • Scams
  • Home
  • Live Crypto Prices
  • Live ICO
  • Exchange
  • Crypto News
  • Bitcoin
  • Altcoins
  • Blockchain
  • Regulations
  • Trading
  • Scams
No Result
View All Result
CryptoSpiel.com
No Result
View All Result

EU crypto wallet reporting deadlines

September 13, 2026
in Regulations
Reading Time: 3 mins read
A A
0
EU crypto wallet reporting deadlines
0
SHARES
0
VIEWS
ShareShareShareShareShare

Commercial manufacturers whose connected hardware wallets or wallet software meet the European Union’s product test must now warn cyber authorities within 24 hours of discovering an actively exploited vulnerability or severe security incident.

The requirement took effect Sept. 11, 2026, under the EU’s Cyber Resilience Act, or CRA. The European Commission’s reporting guidance says the clock applies to manufacturers of products with digital elements.

The CRA is a horizontal product law. The Commission’s implementation FAQ says it applies to hardware and software made available on the EU market. The legal test also requires the product’s intended or reasonably foreseeable use to include a direct or indirect data connection to a device or network.

A commercially supplied connected hardware wallet or downloadable wallet app can meet that test. However, EU guidance does not name wallet brands or declare every wallet service or project covered. Coverage depends on the specific product, how it is supplied and any applicable exclusion.

Related Reading

SafePal breach exposes 40,000 customers as hardware wallet attacks escalate from data leaks to $100 million theft

What manufacturers must report

The first filing is an early warning due without undue delay and no later than 24 hours after a manufacturer becomes aware of the vulnerability or incident. It must indicate, where applicable, the member states where the product is known to have been made available. For a severe incident, the warning must also say whether unlawful or malicious acts are suspected.

A fuller notification is due within 72 hours unless the relevant information was already provided. For an actively exploited vulnerability, that filing adds general information about the product, exploit and vulnerability, plus corrective or mitigating measures. For a severe incident, it adds the nature of the incident, an initial assessment and available mitigation information.

The Daily Brief

The signal, before the noise.

Start your day with the crypto stories moving markets, decoded by CryptoSlate’s editors.

One email. Everything that matters.

Free to join. Unsubscribe any time.

Whoops, looks like there was a problem. Please try again.

You’re on the list. Your next Daily Brief is on its way.

Related Reading

Zilliqa points to hardware wallet flaw discarding entropy to expose crypto keys, enabling 683M ZIL theft

The final deadline differs by event. A vulnerability report is due no later than 14 days after a corrective or mitigating measure becomes available. The CRA sets the severe-incident final report deadline at one month after the 72-hour notification, as detailed in the regulation.

RELATED POSTS

Thailand stablecoin proposal limits third-party transfers

Nasdaq market surveillance cannot settle tokenized rules

Banks get cross-exchange crypto hedge relief under Canada’s new 2027 capital rule

 

Manufacturers file once through the Single Reporting Platform launched by ENISA, the EU cybersecurity agency. The portal sends the notification to the designated coordinating Computer Security Incident Response Team and makes the information available to ENISA, then supports distribution to other relevant national teams. Manufacturers must also inform impacted users and, where appropriate, all users when action is needed, including measures they can take.

Related Reading

No dice? Your Bitcoin hardware wallet is probably not as secure as you thought it was

The reporting rule reaches in-scope products placed on the market before Dec. 11, 2027. That makes the new clock relevant to existing product lines, not only wallets first sold after the broader law takes effect.

Open-source licensing does not create a blanket exemption. The Commission’s open-source guidance says commercially supplied free and open-source products can face manufacturer obligations. Non-monetized software supplied by its manufacturer should not count as commercial activity, while individual contributors are not treated as manufacturers for software outside their responsibility.

Open-source software stewards are a separate legal category, and their reporting duties begin Dec. 11, 2027. That is also when the CRA’s main product-security requirements take effect. The Sept. 11 change starts the rapid reporting regime, not the law’s broader secure-design and product-lifecycle framework.

Credit: Source link

Buy JNews
ADVERTISEMENT
ShareTweetSendPinShare
Previous Post

Crypto Moguls Pledge £72M to Fund Reform UK Election Campaign – Bitcoin News

Related Posts

Thailand stablecoin proposal limits third-party transfers
Regulations

Thailand stablecoin proposal limits third-party transfers

September 12, 2026
Nasdaq market surveillance cannot settle tokenized rules
Regulations

Nasdaq market surveillance cannot settle tokenized rules

September 12, 2026
Banks get cross-exchange crypto hedge relief under Canada’s new 2027 capital rule
Regulations

Banks get cross-exchange crypto hedge relief under Canada’s new 2027 capital rule

September 11, 2026

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended Stories

Coinbase US500 Futures Reach $104M, Demand Test Remains

Coinbase US500 Futures Reach $104M, Demand Test Remains

August 29, 2026
Circle’s Discovery API Streamlines USDC Payments Across Chains

Circle Ends USDC and CCTP V1 Support on Noble by Jan 2027

September 10, 2026
Strategy doubles its stock buyback to $2 billion to pull its STRC shares back to $100

Strategy doubles its stock buyback to $2 billion to pull its STRC shares back to $100

September 9, 2026

Popular Stories

  • SWIFT Experiments With CBDC Interoperability for Facilitating Cross-Border Payments

    DBS and Citi Settle 24/7 Cross-Border Dollar Payment on SWIFT’s Ledger

    0 shares
    Share 0 Tweet 0
  • Trader Says DeFi Altcoin Aave Witnessing Clear Trend Switch, Updates Forecast on Two Low-Cap Coins

    0 shares
    Share 0 Tweet 0
  • Grayscale’s Zcash ETF Tops $500M, but $100M Came From a DCG Affiliate – Bitcoin News

    0 shares
    Share 0 Tweet 0
  • AVAX Staking Guide: How to Stake AVAX Right From Your Core Wallet

    0 shares
    Share 0 Tweet 0
  • Co-founder of Binance Yi He on the Theft of Crypto Assets Worth $1 Million

    0 shares
    Share 0 Tweet 0
CryptoSpiel.com

This is an online news portal that aims to provide the latest crypto news, blockchain, regulations and much more stuff like that around the world. Feel free to get in touch with us!

What’s New Here!

  • EU crypto wallet reporting deadlines
  • Crypto Moguls Pledge £72M to Fund Reform UK Election Campaign – Bitcoin News
  • Ethereum ETFs Stay Strong as Bitcoin Funds Lose $460M in a Week

Subscribe Now

Loading
  • Live Crypto Prices
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

© 2021 - cryptospiel.com - All rights reserved!

No Result
View All Result
  • Home
  • Live Crypto Prices
  • Live ICO
  • Exchange
  • Crypto News
  • Bitcoin
  • Altcoins
  • Blockchain
  • Regulations
  • Trading
  • Scams

© 2021 - cryptospiel.com - All rights reserved!

Please enter CoinGecko Free Api Key to get this plugin works.