New:Automatically Generated CRA Compliance Report

Stay Ahead of the
Cyber Resilience Act with CRAken

The complete Vulnerability Disclosure Program (VDP) platform. Collect, manage, and analyze vulnerability reports to ensure compliance with EU regulations.

Our application

The Cost of Non-Compliance

The Cyber Resilience Act isn't just a guideline—it's a regulation with sharp teeth. Failing to comply puts your business at significant financial and operational risk.

Massive Fines

Penalties can reach up to €15 Million or 2.5% of global turnover, whichever is higher, for non-compliance with essential security requirements.

Reporting Violations

Failure to report actively exploited vulnerabilities or severe incidents within the strict deadlines (24 hours) can result in fines up to €10 Million or 2% of turnover.

Market Withdrawal

Perhaps most critically, national surveillance authorities have the power to prohibit or restrict the making available of non-compliant products on the EU market.

CRAken Platform

Everything you need for CRA Compliance

Discover how CRAken helps you manage vulnerability reports, ensure compliance, and protect your software supply chain.

Secure Intake & Reporting

Secure Intake & Reporting. Standardized vulnerability collection.

Offer a secure channel for researchers to report vulnerabilities. Use our generator to create your security.txt file and ensure compliance with the Cyber Resilience Act (CRA) instantly. This covers the mandatory Single Point of Contact (SPOC) requirement for vulnerability handling.

Secure Forms

Secure submission forms to protect sensitive vulnerability data.

Security.txt Generator

Generate the standard security.txt file to guide security researchers, as required by EU standards.

Customizable Policy

Adapt the Vulnerability Disclosure Policy to your company's requirements.

Smart Triage & Analytics

Smart Triage & Analytics. Manage reports efficiently.

A centralized dashboard to triage, analyze, and resolve vulnerability reports with team collaboration tools. Meet strict CRA reporting deadlines (e.g., 24h early warning) with automated SLA tracking and efficient workflows.

CVSS Scoring

Integrated CVSS calculator to accurately assess severity.

SLA Tracking

Monitor Mean Time to Triage (MTTT) and Mean Time to Resolution (MTTR) to ensure compliance.

Team Collaboration

Assign reports, comment internally, and manage statuses.

Compliance Reports

Compliance Reports. Proof for audits and regulators.

Generate comprehensive certificates and PDF reports to demonstrate your compliance with the Cyber Resilience Act. Move beyond spreadsheets and ensure full traceability of every vulnerability handling action.

PDF Generation

One-click generation of compliance reports for any time period.

Audit Logs

Full traceability of actions taken on every report for audit purposes.

Data Export

Full ownership of your data with JSON export capabilities.

Pricing

Choose the plan that works best for you.

Starter

For startup and small companies
  • Vulnerability Disclosure Policy
  • Vulnerability submission form
  • CRA compliant reports (PDF+JSON)
  • Security.txt file generator
  • High-level dashboard
  • Up to 4 products
  • Password with 2FA, passkeys, Social Login
  • Support by email
30 days free trial
€89.00 / month billed annually
Recommended

Business

Security at DevOps speed
  • All starter features
  • Unlimited products
  • Delegation of triage & analysis to a CRAken's expert (optional)
  • Integration to Github, Gitlab, Slack, Teams
  • Priority support by email (48h)
On-demand

Enterprise

Custom plan tailored to your requirements
  • All Business plan features
  • Volume-based pricing for report delegation
  • Multi-tenancy
  • On-Premise or dedicated instance
  • Enterprise support (teams, slack, ...)
On-demand

Frequently asked questions

Do you have any questions? We have got you covered.

Get early access

Be among the first to get access to CRAken.io

By clicking subscribe, you agree to receive updates about CRAken.io including its launch date. You can unsubscribe at any time.