KunnusKunnus
BlogÜber CRAReifegradanalyse
Demo vereinbarenDemo
Zurück zur Startseite

Plattform-Funktionen

Alles was Sie brauchen, um EU CRA Compliance zu erreichen und aufrechtzuerhalten. Entdecken Sie unsere umfassende Suite von Tools mit Echtzeit-Benachrichtigungen und Team-Zusammenarbeit.

Product Inventory

Manage your entire product portfolio with hierarchical structure, variants, and versions. Classify products per CRA requirements automatically.

Hierarchical Structure

Organize products into families, variants, and versions with full parent-child relationships.

CRA Classification

Guided wizard to classify products as Default, Class I, Class II, or Critical per CRA requirements.

Bulk Import

Import products via CSV or connect to existing PLM systems for automatic synchronization.

Component Tracking

Track shared components across products to understand vulnerability impact.

Version Control

Maintain version history for audit trails and compliance documentation.

Advanced Search

Filter and search across your entire product portfolio with powerful queries.

Key Benefits

  • Complete visibility into your product portfolio
  • Automatic CRA classification with guided wizards
  • Track component usage across all products
  • Maintain audit-ready version history
  • Import existing data from PLM systems
Get Started Free

Product Hierarchy

SmartSensor XR Series
Master Product • 3 variants
XR ProClass I
XR BasicClass I
XR IndustrialClass II
Gateway Hub GH-200
Single Product • Active

SBOM Management

Import, store, and analyze Software Bills of Materials in CycloneDX and SPDX formats. Track component dependencies across products.

Multi-Format Support

Import SBOMs in CycloneDX (JSON/XML) and SPDX (JSON/YAML/RDF) formats.

Dependency Tree

Visualize complete dependency trees with transitive dependency tracking.

Auto-Generation

Connect CI/CD pipelines to automatically generate and update SBOMs.

License Analysis

Identify license obligations and potential conflicts across components.

Export & Share

Export SBOMs in standard formats for customers and regulatory bodies.

Change Alerts

Get notified when component dependencies change or new versions are available.

Key Benefits

  • Support for all major SBOM formats
  • Automatic vulnerability correlation
  • License compliance tracking
  • CI/CD integration for continuous updates
  • Customer-ready export formats
Get Started Free

Component Tree

CycloneDX v1.5
smartsensor-xr-pro@2.1.0
├── linux-kernel@5.15.0
├── openssl@3.0.12 ●
├── zlib@1.2.13
├── busybox@1.36.0
├── curl@8.4.0 ●
│ └── libcurl@8.4.0
├── sqlite@3.44.0
└── app-firmware@2.1.0
├── freertos@10.5.1
└── lwip@2.1.3
CriticalHigh

Vulnerability Tracking

Detect vulnerabilities automatically, track SLAs, meet CRA Article 14 ENISA notification requirements, and manage risk acceptance workflows.

Auto-Detection

Automatically match SBOM components against NVD, OSV, and GitHub Advisory databases.

SLA Tracking

Track time-to-acknowledge, assess, and remediate with configurable SLA targets per severity.

ENISA Notifications

CRA Article 14 compliant: 24-hour deadline tracking for actively exploited vulnerabilities.

Risk Acceptance

Formal approval workflows for accepting risk with audit trail and expiration tracking.

Impact Analysis

See which products are affected and track per-product remediation strategies.

CVD Management

Manage coordinated vulnerability disclosure with security researchers.

Key Benefits

  • CRA Article 14 ENISA notification support
  • Configurable SLA targets per severity level
  • Formal risk acceptance with approval workflows
  • Real-time vulnerability detection from multiple sources
  • Per-product impact and remediation tracking
Get Started Free

CVE-2024-1234

Critical
Component
openssl@3.0.12
CVSS Score
9.5
Affected Products
XR ProXR IndustrialGH-200
Status
In Progress

Security Controls

Pre-defined CRA control templates with gap analysis. Map controls to multiple frameworks including IEC 62443 and ISO 27001.

CRA Templates

Pre-built control library aligned with EU CRA essential requirements.

Multi-Framework

Map controls to IEC 62443, ISO 27001, NIST CSF, and custom frameworks.

Gap Analysis

Identify missing controls and prioritize implementation efforts.

Product Assignment

Assign controls to specific products with inheritance support.

Coverage Tracking

Real-time visibility into control implementation status.

Evidence Linking

Connect evidence documents directly to control implementations.

Key Benefits

  • Pre-built CRA control library
  • Cross-framework compliance mapping
  • Automatic gap identification
  • Real-time coverage metrics
  • Audit-ready evidence linking
Get Started Free

CRA Control Coverage

87% Complete
Secure by Default
CRA-1.1
Done
Vulnerability Handling
CRA-2.1
Done
Security Updates
CRA-2.3
In Progress
Documentation
CRA-3.1
Pending

Evidence & Reports

Collect and organize compliance evidence. Generate self-assessment reports and keep your team aligned with real-time alerts.

Evidence Repository

Centralized storage for all compliance documents with version control.

Auto-Collection

Connect CI/CD pipelines to automatically collect test results and scan reports.

Report Generation

One-click self-assessment reports (Konformitätserklärung) with templates.

Audit Packages

Export complete audit packages with all evidence and documentation.

Team Notifications

Real-time alerts via email, Slack, and Teams when action is needed.

Audit Trail

Complete history of all changes with who, what, when, and why.

Key Benefits

  • Centralized evidence management
  • Automated evidence collection
  • One-click compliance reports
  • Multi-channel team notifications
  • Complete audit trail for compliance
Get Started Free

Evidence Library

+ Upload
Penetration Test Report 2024
PDF • Jan 15
CRA-2.1
Security Architecture Review
PDF • Jan 12
CRA-1.1
SAST Scan Results
JSON • Jan 10
CRA-2.1
Threat Model - XR Pro
PDF • Jan 08
CRA-1.2

Vendor & Customer Portal

Assess supplier CRA compliance, publish security advisories, and share product security info through branded portals.

Vendor Assessments

Assess third-party suppliers against CRA requirements with customizable frameworks.

Security Advisories

Publish and manage security advisories for your customers.

Product Security

Display security features and compliance status per product.

Update Portal

Distribute security updates and patches to customers.

Vulnerability Reporting

Accept vulnerability reports from security researchers.

Branded Portals

Customize portals with your branding for vendors and customers.

Key Benefits

  • Supplier CRA compliance tracking
  • Professional customer communication
  • CRA-compliant disclosure process
  • Self-service update distribution
  • Security researcher engagement
Get Started Free

Security Advisories

Public customer portal

KSA-2024-003Active
OpenSSL Update Required
Critical
KSA-2024-002Resolved
Firmware Security Patch
High
KSA-2024-001Resolved
Authentication Bypass Fix
Medium

Ready to get started?

Start your free trial today and see how Kunnus can transform your CRA compliance.

Start Free TrialBack to Home
KunnusKunnus

The complete EU CRA compliance platform for manufacturing companies. Reduce cost and time by 70%.

Product

  • Features
  • Platform
  • Assessment

Resources

  • CRA Guide
  • Blog

Company

  • About
  • Imprint

© 2026 Think Ahead Technologies GmbH. All rights reserved.

PrivacyCookiesImprint