Address map
CRAnotify is one service spread over several domains, each with a job. Knowing what lives where helps with DNS, corporate filters and browser bookmarks.
The domains
| Domain | What it serves | Access |
|---|---|---|
https://cranotify.eu | Public site: overview, pricing, scope test, contact. | Public |
https://cranotify.eu | The application: where cases are worked. | Session required |
https://cranotify.eu | The reporting form, embeddable. | Public, by form code |
https://doc.cranotify.eu | This documentation. | Public |
api.<domain> | Public API: 4 documented endpoints (incidents, products, compliance score, SBOM intake); console at /swagger. | API key |
Application
| Address | Screen | Minimum role |
|---|---|---|
/login · /login/2fa | Sign-in and two-step verification. | — |
/registrazione | Self-service sign-up. | — |
/reset · /reset/completa | Password reset. | — |
/verifica · /invito | Address verification, accepting an invitation. | — |
/casi | Case cockpit. | Read-only |
/signals | INCOMING queue of inbound signals (public form, connectors, API, intelligence): promote to a case, attach to a case, dispose. | Assessor |
/case · /case/nuovo | Case detail, manual entry. | Assessor |
/triage-app · /verdetto | Guided triage and outcome. | Assessor |
/notifica · /deposito · /ricevuta | Draft, filing and confirmation. | Assessor |
/task/avviso · /task/monte | User notice and upstream report. | Assessor |
/registro · /registro.csv · /fascicolo | Registry, export, defence dossier. | Read-only |
/prodotti · /prodotto · /prodotti.csv | Register, product card, export. | Assessor |
/releases/{id} | Release detail: information, versioned SBOM history, component inventory, vulnerability matches. | Read-only |
/prodotti?vista=entita · /anagrafica/… | Legal entities and per-product CRA roles; grouping and reorganising the register. | Read-only to view; Assessor for the gestures |
/prodotto?tab=vulnerabilita · /prodotto/vex | VEX assessments: recording and approving. | Assessor |
/prodotto?tab=evidenze · /prodotto/controllo | CRA controls and evidence, not-applicable declaration. | Assessor |
/documentazione-tecnica · /documentazione-tecnica/prodotto · /documentazione-tecnica/stampa | Technical documentation, conformity path, printable version. | Read-only to view; Assessor to record a step |
/documentazione-tecnica/firma | Signing the file and the EU declaration. Asks for the password and, when enabled, the second-factor code. | Approver |
/fornitori · /fornitori/documento | Supplier panel: invitations, requests, received documents. | Administrator |
/ricostruzione | Reconstruction as of a date for a product. | Read-only |
/account | Account area (profile, company, subscription, form, API, SBOM, alerts, legal). | Read-only; changes require the relevant role |
/account/security.txt | Your security.txt, ready to publish. | Administrator |
/account/export.json | Account data export. | Administrator |
/esercitazione | Switching exercise mode. | Assessor |
/allegato | Attachment download (never rendered in page). | Assessor |
/logout | Sign out. | — |
Any application address without a valid session redirects to the sign-in page. The application is not indexed by search engines and cannot be framed by other sites.
Public surfaces
| Address | Content |
|---|---|
https://cranotify.eu/f/<code> | Your reporting form. |
https://cranotify.eu/f/<code>?embed=1 | The version to embed in an iframe. |
/fornitore?t=<token> | The supplier portal, at an address separate from the application's: no account, no session, only the link's token. Not indexable. The link is composed by the supplier panel. |
https://cranotify.eu/prezzi · /faq · /glossario | Pricing, frequently asked questions, glossary of the Regulation. |
https://cranotify.eu/privacy · /cookie · /termini · /note-legali · /ia · /accessibilita | Legal documents and statements. |
Documentation
| Address | Content |
|---|---|
https://doc.cranotify.eu/ | Full index. |
https://doc.cranotify.eu/<section>/<page> | The manual pages. |
https://doc.cranotify.eu/cerca?q=… | Full-text search. |
https://doc.cranotify.eu/faq · /supporto · /manuale | Questions, support, complete manual. |
Technical endpoints
| Address | Use |
|---|---|
/healthz | Service and database status (for monitoring systems). |
api.<domain>/api/v1/external/products/{sku}/sbom | Bill-of-materials intake for the given SKU; requires the products:write scope. |
api.<domain>/swagger | Console and OpenAPI spec of the public API (/docs is an alias). |
/webhook/stripe | Reserved for the payment provider; verifies its own signature. |
/robots.txt · /sitemap.xml | Indexing of the public surfaces. |