What else can be reported in the platform?
In a future phase, the SRP will also offer functionality for voluntary notifications.
Any natural or legal person may voluntarily notify:
- Vulnerabilities contained in a product with digital elements;
- Cyber threats that could affect the risk profile of a product with digital elements;
- Incidents having an impact on the security of a product with digital elements;
- Near misses that could have resulted in an incident.
© 2026
European Union Agency for Cybersecurity (ENISA)
• ENISA legal notice
• "All you need to know about the CRA SRP"
•
Disclaimer
Disclaimer: This FAQ is subject to the legal notice published on ENISA's website. Its content was extracted from ENISA's web page when this website was built; please check the original page for accuracy.