What problem does it solve? Manufacturers, importers, and distributors selling connected hardware or software in the EU must comply with Regulation (EU) 2024/2847, but navigating product classification, conformity assessment routes, SBOM duties, and ENISA reporting deadlines is complex and error-prone. ## Core Features & Use Cases - Product Classification: Determines whether a product is in CRA scope and whether it falls into Default, Class I (Annex III), or Class II (Annex IV) categories. - Gap Analysis: Maps existing security controls against Annex I Part I security properties and Part II vulnerability handling obligations. - Conformity & CE Marking Guidance: Walks through Module A self-assessment or Notified Body routes, technical documentation (Annex VII), and the EU Declaration of Conformity. - Use Case: A router manufacturer asks whether their home router needs a Notified Body; the skill classifies it as Class I, explains the self-assessment option, and lists the technical documentation and 24/72-hour ENISA reporting duties. ## Quick Start Ask the skill to classify your connected product under the EU Cyber Resilience Act and list its conformity assessment obligations.