---
title: "Developing CRA-compliant products with us — Tweede golf"
url: https://daily.dev/posts/developing-cra-compliant-products-with-us-tweede-golf-q5lbak6oy
source_url: https://tweedegolf.nl/en/blog/239/developing-cra-compliant-products-with-us
type: article
source: "Tweede golf"
published: 2026-07-06T08:56:01.109Z
updated: 2026-07-06T08:56:26.244Z
tags: ["security", "rust"]
reading_time: 11
upvotes: 0
comments: 0
language: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# Developing CRA-compliant products with us — Tweede golf

**[Tweede golf](https://daily.dev/sources/tweedegolf)** · 11 min read · 0 upvotes · 0 comments

## Summary

The EU Cyber Resilience Act (CRA) is now partially in effect as of July 2026, with full application coming in December 2027. Manufacturers of connected digital products (IoT devices, EV chargers, etc.) bear ultimate responsibility for CRA compliance. When working with a software development partner, responsibilities should be divided based on three principles: expertise alignment, operational feasibility and cost, and designing for independence over time. A practical responsibility table covers documentation, product development, identification, support, and vulnerability handling. Concrete practices from critical open source projects (sudo-rs, e-KS) illustrate how to meet CRA requirements: threat modelling, careful dependency selection with tools like Dependabot, coordinated vulnerability disclosure, and backporting security fixes to older versions.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://tweedegolf.nl/en/blog/239/developing-cra-compliant-products-with-us>

## Similar posts on daily.dev

- [The Time Is Now to Prepare for CRA Enforcement](https://daily.dev/posts/the-time-is-now-to-prepare-for-cra-enforcement-ozp1wsxr0) · Security Boulevard · 0 upvotes · 0 comments
- [EU’s Cyber Resiliency Act will put IT leaders to the test](https://daily.dev/posts/eu-s-cyber-resiliency-act-will-put-it-leaders-to-the-test-ufqkjfyfz) · CSO Online · 0 upvotes · 0 comments
- [Cyber Resilience Act Compliance \(CRA\) with Aikido Security](https://daily.dev/posts/cyber-resilience-act-compliance-cra-with-aikido-security-0yzywsub3) · Aikido Security · 0 upvotes · 0 comments

---

Tags: [#security](https://daily.dev/tags/security), [#rust](https://daily.dev/tags/rust)

[View this post on daily.dev](https://daily.dev/posts/developing-cra-compliant-products-with-us-tweede-golf-q5lbak6oy)
