Clause 2 — Normative references
Clause 2 lists normative references indispensable for applying FprEN 40000-1-2:2026. The primary normative reference cited is FprEN 40000-1-1:2026 (Cybersecurity requirements for products with digital elements - Part 1-1: Vocabulary).
What Clause 2 requires
Manufacturers must interpret all terms and requirements in FprEN 40000-1-2 using the definitions set out in FprEN 40000-1-1. When referenced documents are dated, only the specific edition applies. When undated, the latest edition (including amendments) applies.
How CVD Portal supports compliance
CVD Portal enforces consistent, standardized terminology across all compliance artifacts and features:
- Vocabulary alignment: All dashboard interfaces, compliance reports, and export schemas use the exact terms defined in FprEN 40000-1-1 and the Cyber Resilience Act (Regulation (EU) 2024/2847).
- Standardized data models: Submission forms, CVSS v3.1/v4.0 scoring tools, and CSAF 2.0 advisories map fields directly to standard European cybersecurity definitions.
- Audit-ready documentation: Exported technical files and control registers maintain precise references to normative standards, preventing semantic ambiguity during external audits or notified body reviews.