EU Cyber Resilience Act
How the Product CERT portal supports Flowserve vulnerability handling, transparency, and evidence workflows for products with digital elements.
Draft compliance content for DEV review
This page is a workflow overview, not legal advice or a declaration of conformity. Legal and product owners must approve production claims.
Portal role
The Product CERT portal is designed to provide a consistent public contact point, support structured vulnerability intake, maintain an auditable handling record, and publish customer actions in human-readable and machine-readable formats.
Product classification, conformity assessment, technical documentation, support periods, and regulatory notifications remain governed by the responsible Flowserve business and legal processes.
Workflow capability map
| Capability area | Portal support | Approval owner |
|---|---|---|
| Vulnerability contact | Public reporting workflow | Product Security and Legal |
| Coordinated handling | Triage, assignment, status, and audit history | Product Security |
| Customer guidance | Versioned advisories with affected products and remediation | Product Security and Product Engineering |
| Machine-readable publications | Structured advisory API and export | Product Security |
| Support-period communication | Security notices and product-specific publication metadata | Product Management and Legal |
| Regulatory reporting support | Tracked exploitation and incident escalation data | Product Security and Legal |
Evidence produced by the portal
The portal supports compliance operations; it does not replace product-specific legal or technical documentation.