Blog

Practical insights on EU compliance, regulatory strategy, and building products for the European market.

Recent Articles

More from the Blog

The European Countries as Playing Cards. AI Generated.
Daniel Thompson-Yvetot

Public Enquiry National Standards Orgs

Discover the EU's National Standards Organisations that will support you in filing commentary about the CRA's Standards.

StandardsCRAETSI
POV: you are sitting in your kitchen with a lot of digital devices around you (phone, tablet, baby monitor, wifi-router, smart wall panel, etc.)
Comply.Land Team

Your Rights

A plain-language guide to the three EU laws that protect you when you buy connected products: the Cyber Resilience Act, the Product Liability Directive, and the Digital Services Act, with practical steps for reporting a problem in Malta.

CRAPLDDSAConsumer RightsEU Compliance
We Speak Supply Chain: SBOM, CBOM, HBOM
Daniel Thompson-Yvetot

We Speak Supply Chain: SBOM, CBOM, HBOM

The Cyber Resilience Act names one bill of materials. Your customers will ask for three. What an SBOM needs, and why crypto and hardware inventories follow.

CRASupply ChainSBOMCBOMHBOM
We Speak Supply Chain
Daniel Thompson-Yvetot

We Speak Supply Chain

Under the Cyber Resilience Act, the CRA obligation lands on whoever ships the finished product. If you sell components, the evidence comes from you.

CRASupply ChainProduct SecuritySBOMEU Compliance
The Shield, the Sword, and the Key
Comply.Land Team

The Shield, the Sword, and the Key

Why Europe's digital rulebook only makes sense as a set of three. The CRA, the revised Product Liability Directive, and eIDAS 2.0 form a single system, not three parallel regulations.

CRAPLDeIDAScomplianceEU regulation
EU Cyber Resilience Act: Why Secure by Design Is Now a Business Strategy Problem
Comply.Land Team

EU Cyber Resilience Act: Why Secure by Design Is Now a Business Strategy Problem

The Cyber Resilience Act doesn't just change what your products must do. It changes when compliance has to happen, who in your organisation is responsible for it, and what evidence you need to prove it.

CRAcompliancestrategycybersecurity
EU Cyber Resilience Act Compliance for IoT and Connected Device Manufacturers
Comply.Land Team

EU Cyber Resilience Act Compliance for IoT and Connected Device Manufacturers

The EU Cyber Resilience Act introduces mandatory cybersecurity obligations for any product with digital elements. Full enforcement begins December 2027 — here's what manufacturers need to know.

CRAIoTcompliancecybersecurity
The Cyber Resilience Act vs NIS2: Two EU Cybersecurity Laws, One Critical Question
Comply.Land Team

The Cyber Resilience Act vs NIS2: Two EU Cybersecurity Laws, One Critical Question

The NIS2 Directive and the Cyber Resilience Act are not two versions of the same obligation. The EU designed them to govern entirely different ground. Knowing which one applies to you — and why — is not straightforward.

NIS2CRAcybersecuritycompliance
Understanding the CRA: A Practical Introduction
Daniel Thompson-Yvetot

Understanding the CRA: A Practical Introduction

What every software team needs to know about the EU Cyber Resilience Act and how it affects your products.

CRAcomplianceguide
Why Malta is Becoming Europe's Compliance Hub
comply.land team

Why Malta is Becoming Europe's Compliance Hub

Exploring Malta's unique position as a center for EU regulatory expertise and compliance innovation.

Maltaeventscommunity
Stay Informed

Get Compliance Insights

Subscribe for new articles, regulatory updates, and practical compliance guidance delivered to your inbox.