Skip to main content
Oficiálna stránka verejnej správy SR
Cyber Resilience Act · National Security Authority

Report possible product non-compliance

Last updated:

A natural person, company, research institution, public authority, security researcher or another third party may flag possible non-compliance of a product with digital elements.

First choose the correct submission type

What to prepare

Do not send passwords, tokens, unredacted personal data or a detailed exploit over an unencrypted channel.

How to deliver the concern

This website does not currently list a verified electronic form or dedicated CRA mailbox for these concerns. Confirm the appropriate delivery method on the contact page. Do not send sensitive attachments to general contacts.

What may happen next

The authority may register and initially assess the information before deciding whether there are grounds for further examination. A reporter cannot require a particular outcome. Any acknowledgement and follow-up depend on the supplied contact details, confidentiality and the ongoing assessment.