Welcome to Compliance Labs

Select your plan as a vendor

Compliance Labs connects software vendors with organizations seeking cybersecurity compliance solutions.
Our testing services boost credibility by evaluating and showcasing your software.

Save 15%

Get Listed

Ideal for vendors beginning their compliance journey.

€0forever
Get started

Features:

Submit 1 software for a baseline CAE (Compliance Assurance Evaluation) report?Compliance Labs reviews public documentation and maps capabilities and software contribution as stated to the regulations and frameworks in scope. Up to 3 regulations and frameworks from a standard set?Including NIS2, PCI DSS, HIPAA, GDPR, NIST CSF, NIST SP 800-53, and MITRE ATT&CK, with no selective scoping. One RFP-ready extract per year, marked Vendor-Stated?For use in buyer responses. Benchmarking capabilities and coverage compared to competing vendors Browse 50 evaluated solutions and their CAE reports?Selected to cover every software category, with your own listing always fully accessible. Save, export and share vendor lists

Get Proven

Built for vendors actively pursuing compliance.

€549/mo
Get started

Everything in Get Listed, plus:

Submit 1 software for a full CAE report?Compliance Labs reviews your proprietary documentation, technical manuals, installation guides, and configuration references, plus SBOM, internal documentation and audit reports, and independently confirms capabilities and software contribution as examined across the regulations and frameworks in scope. Coverage extended to up to 10 regulations and frameworks?Aligned with your target markets, drawn from a library of 40+. Unlimited RFP-ready extracts of your listing Report refreshed twice a year?Plus quarterly regulatory alerts, covering new regulations, capability changes, security vulnerabilities and MITRE updates, and alerts on changes affecting your evaluation. Annual regulatory position report?From a Compliance Labs analyst, covering your current coverage, and gaps. Access to 1000+ compliance-relevant solutions and CAE reports

Get Scale

Designed for vendors deeply engaged in compliance.

€849/mo
Get started

Everything in Get Proven, plus:

Submit 1 software for an Evidence Effectiveness Evaluation (EEE) report, extending the documentary examination to direct testing?Compliance Labs independently tests your software and verifies its capabilities and contribution, providing the technical evidence expected by assessors such as QSA, ISO and DORA, in a structured audit dossier. Dedicated compliance analyst as one point of contact across evaluation, regulatory changes and audit preparation Pre-audit evidence pack for QSA, ISO and DORA requests Full access to exclusive resources, tools, guides, templates, and policies?Accelerate your compliance work with ready-to-use materials.

Get Ready

Assess CRA conformity and SSDF alignment.

€Custompricing, one-off engagement
Contact sales
Submit software for SSDF / CRA readiness report?Compliance Labs reviews your software and secure development lifecycle for alignment with NIST SSDF practices and EU Cyber Resilience Act essential requirements. CRA scope, product classification and conformity route Gap analysis for CRA requirements and SSDF practices Compliance documentation assessment?For alignment with CRA conformity and SSDF attestation requirements. Cybersecurity risk assessment and prioritized remediation roadmap Custom testing on pre-release software and internal systems?Pre-release software, internal applications, cloud connectors and proprietary pipelines, with the same rigour as your production software.

Compare plans

Find the right plan for your compliance journey

Features
Get Listed
Get Proven
Get Scale
Evaluation and coverage
Evaluated solutions you can browse501000+1000+
Software submitted for evaluation1 baseline CAE1 full CAE1 EEE, with testing
Basis of the evaluationPublic documentationProprietary documentation, SBOM, audit reportsDirect testing of the software
Regulations and frameworks in scopeUp to 3, standard setUp to 10, from 40+Up to 10, from 40+
Buyer-facing evidence
RFP-ready extracts of your listing1 per year, Vendor-StatedUnlimitedUnlimited
Pre-audit evidence pack for QSA, ISO and DORA requests——Included
Support and monitoring
Analyst involvement—Annual regulatory position reportDedicated compliance analyst
Exclusive resources (tools, guides, templates, policies)——Full access

Already have an account? Log in

Not a vendor? Sign up as a member

Select the fields to be shown. Others will be hidden. Drag and drop to rearrange the order.
  • Vendor
  • Category
  • CL Tier
  • Short description
  • Website
  • What it is
  • Best for
  • Does NOT do
  • CL verdict
  • Regulatory coverage
  • Frameworks tested
  • Capabilities
  • MITRE ATT&CK
  • Strengths
  • Cautions
  • Anti-hype claims
  • Operational metrics
  • Evidence pack
Compare
Compare ×
View comparison Continue browsing software