CIRCIA (Cyber Incident Reporting for Critical Infrastructure Act)
CIRCIA: Required Reporting (Sec. 2242)

CIRCIA (Cyber Incident Reporting for Critical Infrastructure Act) CIRCIA-2242a3: Supplemental Reports

A covered entity must promptly submit an update or supplement to a previously submitted covered cyber incident report when substantial new or different information becomes available, or if it makes a ransom payment after the initial report, until it notifies CISA the incident has concluded and is fully mitigated and resolved.

Other controls in CIRCIA: Required Reporting (Sec. 2242)

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.