CRAnotify Documentation

States, verdicts and event types

The application's reference tables, on one page. Handy to keep open while working a case, or to attach to an internal procedure.

Case states

StateOriginAvailable actions
newManual entry, or an external signal promoted to a case.Start the triage, archive.
triageTriage started.Complete the three steps.
obligationVerdict of obligation.Take charge, prepare the notification, file.
in progressEarly warning filed.File the update and the final report.
fulfilledFinal report filed.Consult, generate the dossier.
archivedNo obligation, or archiving.Consult.

Events arriving from outside (public form, connectors, API, intelligence) are not born as cases: they live first as signals in the INCOMING queue (/signals), with their own states — new, promoted, attached, duplicate, informational, dismiss. No statutory clock runs until a person promotes the signal to a case (it is the promotion that sets the moment of awareness).

Verdicts

VerdictConditionLegal basisEffect
obligationVulnerability with documented exploitation.Art. 14(2)(a)24-hour clock, alert to the contact.
obligation (incident)Serious incident with security properties compromised.Art. 14(4)(a)24-hour clock; final report within one month of the early warning.
suspendedInsufficient elements to decide.to be reassessedRe-check reminder; the statutory deadline keeps running.
no obligationEvent out of scope, or precondition absent.—Archived with the justification on the record.

Obligation phases and deadlines

PhaseDeadlineRuns fromOn confirmation
Early warning24 hoursMoment of awarenessThe case moves to «in progress»; the update opens.
Update72 hoursFiling of the early warningThe final report opens; for a vulnerability you state the corrective-measure date.
Final report · incident1 monthFiling of the early warningThe case moves to «fulfilled».
Final report · vulnerability14 daysAvailability of the corrective measureThe case moves to «fulfilled».

Registry event types

TypeCovers
reportIntake from the portal, manual entry.
assessmentPromotion, attachment or disposal of a signal, triage started and concluded, verdicts, taking charge, archiving, change of the moment of awareness.
notificationFilings of the three phases, user notice, upstream report, dispatch of operational alerts.
administrationSettings, users, escalation, API keys, SBOM, alert channels, account security.

Clock colours

StateCondition
More than 4 hoursMore than 4 hours to the deadline.
Less than 4 hoursUnder 4 hours to the deadline.
Deadline passedDeadline missed.

Subscription states

StateRegulatory workNew products / API keysReading and export
trialYesYes (within slots)Yes
activeYesYes (within slots)Yes
payment overdue (grace)YesYes (within slots)Yes
suspendedYesNoYes
canceledYesNoYes

«Regulatory work» = opening cases, running triage, filing, attaching evidence and exporting: it never stops for a payment. Details in Subscription and billing.

Didn’t find the answer?

Support replies within one working day. Quote your organisation code and, if the request concerns a case, its number.

Documentation updated on 5 August 2026 · Legal notice · Privacy · support@cranotify.eu