Portaregulus
This is a status indicator, not an official EU conformity mark. It reflects that a CVD intake channel is live and the September 2026 baseline artifacts are in place. It does not by itself establish conformity or a presumption of conformity under the CRA, and CVD Portal is not affiliated with or endorsed by the EU or ENISA.
Publicly accessible way for researchers and users to report vulnerabilities.
- ▸Branded submission portal — live
- ▸Machine-readable security.txt at /.well-known/security.txt
- ▸Published CVD policy (scope, safe-harbour, SLAs, contact)
Documented rules for who verifies a report and who files the ENISA notification.
- ▸48h SLA tracking with coordinator assignment and breach alerts
- ▸SRP-ready Article 14 filing package (24h / 72h / 14d), prepared for manual submission
- ▸Vulnerability Handling Procedure — signed and on file
Proof that each report was evaluated and a deliberate decision was made.
- ▸Immutable append-only audit log (actor, timestamp, IP, country)
- ▸Per-submission communication log
- ▸ENISA report export and CSAF 2.0 advisory generation
This verification is generated automatically from live CVD Portal infrastructure data for Portaregulus. It reflects the company's current compliance status and updates in real time.
Provided under CVD Portal trust and security policy · cvdportal.com