- Enforced by
- OPSS
- Status
- In Force
- Penalty ceiling
- Regulated
Does it bind you?
Business-side roles with duties under this instrument.
Other Acts binding the same actors
If a role above is yours, these are the other instruments that most often bind it.
Manufacturer — also bound by 502 other Acts
What it requires
Regulations creating concrete business duties or carrying penalties, grouped as the instrument is structured. Titles link to the source text — blue means you’re leaving for legislation.gov.uk.
- Comply with security requirements if multiple manufacturers produce the same productManufacturer
- Retain statement of compliance for 10 years or product support periodManufacturer
- Keep a copy of your product's statement of complianceManufacturer
8 other provisions — procedural and definitional
Schedules
3 of 18 shown- Ensure product passwords are unique or user‑set and not easily guessableManufacturer
- Publish a security issue reporting contact and response timelineManufacturer
- Include required information in the statement of complianceManufacturer
15 other schedules
Help complying
Guvnor’s practical routes through this instrument.
PSTI IoT compliance check
Quick compliance check for IoT manufacturers, importers, and distributors. Confirm product scope, verify three mandatory security requirements, identify your supply chain role, …
IoT product security compliance (PSTI Act)
How to comply with the Product Security and Telecommunications Infrastructure Act 2022 if you manufacture, import, or distribute consumer connectable products in …
Duty extraction and severity labels are Guvnor’s analysis of the instrument, not the instrument itself. Always verify against the linked source text.