Latest Articles
CRA and the EU AI Act: How the Two Regulations Overlap
Articles
Where the Cyber Resilience Act and the AI Act apply to the same product, which obligations duplicate, which conflict, and…
CRA SRP: A Single Reporting Platform for Cyber Resilience Act Compliance
Articles
ENISA's Single Reporting Platform goes live on 11 September 2026. What it does, who registers, what the 24-hour clock actually…
Cyber Resilience Act & UK: Does the CRA Apply to UK Companies?
Articles
What the EU Cyber Resilience Act is, when it takes effect, and why Brexit does not put UK software and…
SBOM Requirements Under the EU Cyber Resilience Act
Articles
What Annex I actually requires, why the September 2026 reporting deadline makes SBOMs urgent before they are legally mandatory, and…
Does the EU AI Act Apply to Your Business? Three Routes to EU Jurisdiction
Articles
The most common assumption among UK, US, Canadian, and Swiss businesses encountering the EU AI Act for the first time…
Essential FRAND Guide for the EU Data Act
Articles
FRAND prohibits exploitative contracts, caps compensation costs for SMEs, and stops market incumbents from discriminating against competitors seeking data access.
What Documents Do You Need for EU AI Act Compliance? (The Complete Checklist)
Articles
By Yuliia Habriiel, Regulatory Lawyer. Last reviewed 12 August 2026, against the AI Act as amended by Regulation (EU) 2026/1744…
EU Data Act Compliance Checklist for IoT Device Manufacturers
Articles
A practical legal guide for manufacturers of connected products navigating Regulation (EU) 2023/2854 The EU Data Act has applied since…
What Is PCI Compliance in the UK? A Plain-English Guide for Businesses
Articles
PCI compliance refers to adherence to the Payment Card Industry Data Security Standard (PCI DSS), a set of security requirements…
Your Guide to DORA Regulation: What It Is, Who It Applies To, and What It Requires
Articles
A practical legal guide to the Digital Operational Resilience Act (Regulation (EU) 2022/2554)