I don't really listen to podcasts, however this one appeared with an alarming topic:
The Cyber Resilience Act is about to change how every connected product gets built, sold and supported in the EU; and Raspberry Pi is no exception. In this episode, Tom Westcott, Matthew Lear and James Hughes sit down to unpack what the CRA actually requires, who it applies to, and what it means in practice for makers, developers and manufacturers building on Raspberry Pi.
They cover the basics of the legislation like secure-by-design requirements, vulnerability disclosure obligations, and the compliance deadlines heading into 2027 before getting into the part most people actually want to know: how Raspberry Pi helps you to be CRA compliant, and what that means for anyone building products on top of it.
Whether you're shipping a commercial product, running a small business, or just curious about how EU regulation reaches into the maker world, this conversation breaks down the legislation without the legal jargon.
In this episode:
-
What the Cyber Resilience Act is and why it exists
-
Who's actually in scope (spoiler: it's not just big manufacturers)
-
How Raspberry Pi is helping developers meet CRA requirements
-
Practical steps you can take now to get ahead of compliance deadlines
I'll save you a google search:
https://en.wikipedia.org/wiki/Cyber_Resilience_Act
https://digital-strategy.ec.europa.eu/en/policies/cyber-resilience-act
Something to follow when doing a design challenge? (I haven't fully read through it all yet)
