76% of 623 EU software vendors have no security.txt ahead of the CRA 24h rule
cradrill.com
cradrill.com
The only websites that should require it are the ones that provide downloadable software or software that is used on digital products. And it seems that European alternatives site lists primarily (pure) SaaS and only a few others?
If I push to add one to my employer's website, will our security team thank me for doing so?
https://developers.cloudflare.com/security-center/infrastruc...