Article 55 Supplementary cybersecurity information for certified ICT products, ICT services and ICT processes
1. The manufacturer or provider of certified ICT products, ICT services or ICT processes or of ICT products, ICT services and ICT processes for which an EU statement of conformity has been issued shall make publicly available the following supplementary cybersecurity information:
(a) guidance and recommendations to assist end users with the secure configuration, installation, deployment, operation and maintenance of the ICT products or ICT services;
(b) the period during which security support will be offered to end users, in particular as regards the availability of cybersecurity related updates;
(c) contact information of the manufacturer or provider and accepted methods for receiving vulnerability information from end users and security researchers;
(d) a reference to online repositories listing publicly disclosed vulnerabilities related to the ICT product, ICT service or ICT process and to any relevant cybersecurity advisories.