This European Standard specifies requirements for the design, implementation and monitoring of smart contracts in products with digital elements in order to address the essential cybersecurity requirements laid down in the Cyber Resilience Act (CRA). It establishes requirements for ensuring protection against unauthorised access, safeguarding the confidentiality of data, maintaining the integrity of data, and enabling the secure transfer of data and settings in accordance to CRA.
This European Standard applies to organisations that design, develop, deploy, or manage products with digital elements incorporating smart contracts for cybersecurity resilience, including software developers, hardware manufacturers, importers and distributors, service providers, and other economic operators. It specifies requirements intended to ensure that smart contracts operate as secure and trustworthy components of digital products and that their use contributes to presumption of conformity with the CRA for the essential requirements covered by this document.
This European Standard does not address the legal enforceability of contracts, governance frameworks of distributed ledger systems, or regulatory requirements outside the scope of the CRA.
NOTE: If the word "harmonized" (marked in green) is not found in the field with the name of the directive, it means that the European standard is not cited in the OJEU.
PROJECT
prSRPS EN 18439:2026
10.99
New project approved
Jul 13, 2026