EU Cyber Resilience Act
Authorised representatives, importers, distributors and open-source stewards (Articles 18 to 24) – EU Cyber Resilience Act

EU Cyber Resilience Act Art. 20(3): Distributor withholds non-conforming products and reports significant risk

A distributor that believes, from information it holds, that a product or the manufacturer's processes do not meet Annex I must not make it available until conformity is restored, and where the product poses a significant cybersecurity risk must inform the manufacturer and authorities without undue delay.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Authorised representatives, importers, distributors and open-source stewards (Articles 18 to 24) – EU Cyber Resilience Act

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.