Parts from Asia. Ready for Europe. Running on site.
Since 2024 the EU has tightened the rules for products placed on its market — especially for connected devices. For the parts it supplies, ITDA-S takes on the importer’s obligations and closes the chain from the factory to your installation.
Everyone covers one link. Nobody owns the chain.
Bringing a part from an Asian factory into a running European installation takes four links. Today each link has its own provider — and the risk falls into the gaps between them, on you.
- 1SourceFind, qualify and buy the right part — from Asia or Europe.
- 2Make EU-ReadyConformity, cybersecurity rules, documentation and importer liability.
- 3IntegrateInstall, configure and commission on site.
- 4SustainSpare parts, alternatives, security updates, long-term availability.
covered partly not coveredTypical scope of each provider type; individual companies may differ.
Why it matters now
- 13 Dec 2024
General Product Safety Regulation (GPSR)
Consumer products placed on the EU market need an economic operator established in the EU who keeps the documentation available and is the contact for authorities.
- 1 Aug 2025
Radio Equipment Directive — cybersecurity
Internet-connected radio equipment placed on the market from this date must meet cybersecurity requirements (harmonised standards EN 18031).
- 11 Sep 2026 → 11 Dec 2027
Cyber Resilience Act (CRA)
Reporting of actively exploited vulnerabilities and severe incidents applies since September 2026; full obligations for all products with digital elements from December 2027.
The dates above summarise EU rules as of October 2026 in our own words and are not legal advice. Current status, sources and fact check: EU Rules Radar. →
What every EU-Ready article comes with
Available per article in the customer portal. EU-Ready by ITDA-S →
- Datasheet and technical documentation
- EU declaration of conformity and test reports
- RED / EN 18031 cybersecurity status for connected devices
- CRA readiness status and update policy
- EU economic operator: ITDA-S, Austria
- Risk level (supply, lifecycle, compliance, logistics, vendor)
- A named alternative product — ideally from the other continent
- Spare-part and long-term availability information
How EU-Ready works
- 1
Requirement
You describe the part or project and the target market.
- 2
Qualify
We select vendors in Europe and Asia and collect the evidence.
- 3
Check & document
Compliance is checked and the EU-Ready File is completed before shipment.
- 4
Deliver & integrate
ITDA-S imports and delivers; QmiSoft integrates and commissions.
- 5
Sustain
We track lifecycle, alternatives and security updates for years.
Free guide: EU rules for connected products
CRA, RED / EN 18031, GPSR, Data Act, NIS2, product liability and the Machinery Regulation — what buyers, importers and operators must do, with a checklist. 4 pages, PDF.
EU-Ready — frequently asked questions
What does GPSR require when I buy parts from Asia?
Since 13 December 2024 the General Product Safety Regulation requires an economic operator established in the EU for consumer products — products intended for or likely to be used by consumers. Many CE-marked products already needed one under the Market Surveillance Regulation (EU) 2019/1020. This operator keeps the documentation available and is the contact for market surveillance authorities. If you import directly, that responsibility is yours — with EU-Ready, ITDA-S in Austria takes on that role for the parts it supplies.
Does the RED cybersecurity requirement apply to my IoT device?
Since 1 August 2025, radio equipment that can connect to the internet, as well as certain devices handling personal data or payments, must meet the cybersecurity requirements of the Radio Equipment Directive. Applying the harmonised standards EN 18031 gives a presumption of conformity — except where the restrictions published with their listing in the Official Journal apply. Wi-Fi, cellular or other connected IoT modules are typically in scope; the EU-Ready File shows the status per part.
When does the Cyber Resilience Act apply?
Reporting of actively exploited vulnerabilities and severe incidents applies since 11 September 2026. The full obligations for products with digital elements — including security updates over the support period — apply from 11 December 2027. Parts bought today will be in use then, so ITDA-S checks CRA readiness and update policies now.
What is in an EU-Ready File?
Datasheet and technical documentation, the EU declaration of conformity and test reports, RED / EN 18031 and CRA status, the EU economic operator, a risk level for supply, lifecycle, compliance, logistics and vendor, a named alternative product and spare-part information.
Why does every article have a risk level and an alternative?
International supply chains change: vendors discontinue products, lead times grow, rules tighten. A visible risk level and a pre-qualified alternative — ideally from the other continent — let you decide before a problem stops your installation.
The dates above summarise EU rules as of October 2026 in our own words and are not legal advice. Current status, sources and fact check: EU Rules Radar. →
Ready to connect Europe and Asia?
Tell us what you need — product, project or market. We reply within one business day.