This implementing regulation provides precise technical definitions for the categories of “important” and “critical” products with digital elements under the Cyber Resilience Act (Regulation (EU) 2024/2847). It clarifies which products fall into each category based on core functionality, ensuring that manufacturers know when stronger conformity assessments or cybersecurity certification requirements apply. The regulation sets out detailed product descriptions in its annexes, covering both important and critical product types to improve legal certainty and facilitate consistent application of cybersecurity rules.