The UK Product Security and Telecommunications Infrastructure (PSTI) Act sets baseline security requirements for consumer connectable products sold in the UK. It bans universal default passwords and requires a vulnerability disclosure policy.
Breaking the PSTI Act can lead to fines of up to £10 million or 4% of global turnover. Manual compliance checks are too slow and error-prone for modern release cycles.
TrustDyne maps firmware findings to the requirements of the PSTI Act, the EU CRA and the relevant sector frameworks. It checks password hashing schemes, software support periods and disclosure posture, and it produces a report with an SBOM, a vulnerability assessment and the fixes to support your compliance work. TrustDyne gives decision support and evidence. It is not a certification body.