Skip to content
Back to Guavy Wire
Crypto

EU Wallet Providers Face 24-Hour Deadline for Severe Vulnerability Reports

Share

The European Union has introduced new cyber rules that require cryptocurrency hardware and software wallet providers to report actively exploited bugs or severe security vulnerabilities within 24 hours.

This measure is part of the EU's Cyber Resilience Act, which took effect on Friday, according to an announcement from the European Commission.

Manufacturers must submit an early warning for severe vulnerabilities within 24 hours, followed by a full notification within 72 hours. A final report will be required 14 days after corrective or mitigating measures are available and within one month for severe incidents.

The EC said the new reporting requirements aim to better protect consumers and businesses from cyber threats. The measure extends to all products 'with digital elements made available in the EU' and builds on the EU's broader cybersecurity strategy.

Companies that fail to adhere to the cybersecurity measures under Articles 13 and 14 may face an administrative fine of up to €15 million or 2.5% of worldwide annual turnover, depending on which figure is higher.

More on Crypto

Disclaimer: Guavy is a data and market intelligence provider, not an investment adviser. The information, signals, and market analysis provided by the Guavy API and related services are for informational purposes only and are not intended as financial advice, investment recommendations, or an endorsement of any particular trading strategy. Trading in volatile markets, including cryptocurrency, carries significant risk and may not be suitable for all investors. Past performance is not indicative of future results. Users should consult with a qualified financial professional before making any investment decisions. Guavy makes no guarantee of trading profits or financial returns.

Market sentiment intelligence for apps, funds & agents

Location

729 55 Ave SW
Calgary AB T2V 0G4
Canada

© 2026 Guavy Inc