Product security is full of concepts that are hard to adopt: a vulnerability disclosure policy, a product’s scope under the Cyber Resilience Act, the harmonised standards that apply to it. Each one takes a specialist to read the texts, and few manufacturers have one for every product.
1-click compliance is a cetome initiative to change that. We turn the analysis our advisors do by hand into free tools that give the answer in one click, and explain it.
Why 1-click compliance
Concepts that are hard to adopt
Product security relies on concepts that are difficult to adopt outside a small circle of specialists, and a requirement that nobody understands is a requirement that nobody applies.
Awareness of product cyber security
Every result comes with its explanation, so the people who use the tools learn each requirement as they meet it.
Faster adoption by manufacturers
An answer in one click removes the first obstacle, knowing where to start, so manufacturers act sooner and across their whole portfolio.
Usable without a technical background
Product management, marketing, legal and compliance get the answer themselves, without first learning the legal text or the standards.
Auto VDP: evaluate your VDP in one click
The usual approach
Evaluating a vulnerability disclosure policy is a manual exercise: reading the policy, then checking it against several standards and frameworks, each with its own requirements.
In one click
We created
a methodology to evaluate an existing policy:
how easy it is to find, and
whether it contains the mandatory information. Enter your brand website or your policy, and Auto VDP evaluates it in one click.
CRAscoping: your CRA scope in one click
The usual approach
Scoping a product under the CRA usually means a long questionnaire that reimplements the legal text. Each question takes knowledge of the regulation to answer, and the edge cases are rarely handled well.
In one click
Describing a product is much easier. Paste the URL of your product page, and in one click CRAscoping returns its scope under the CRA, the associated harmonised standards and the rationale behind the result.