Compliance

UK PSTI Act

Introduction

The UK Product Security and Telecommunications Infrastructure (PSTI) Act sets baseline security requirements for consumer connectable products sold in the UK. It bans universal default passwords and requires a vulnerability disclosure policy.

Why it's needed

Breaking the PSTI Act can lead to fines of up to £10 million or 4% of global turnover. Manual compliance checks are too slow and error-prone for modern release cycles.

How TrustDyne works

TrustDyne maps firmware findings to the requirements of the PSTI Act, the EU CRA and the relevant sector frameworks. It checks password hashing schemes, software support periods and disclosure posture, and it produces a report with an SBOM, a vulnerability assessment and the fixes to support your compliance work. TrustDyne gives decision support and evidence. It is not a certification body.