
Topic hub
The DORA hub
Everything you need to make sense of the EU Digital Operational Resilience Act: the articles, the Register of Information, ICT third-party risk and incident reporting.
Guides
DORA, explained

Is your organisation in scope for DORA? Who the regulation actually covers
DORA's scope is broad within finance but precise about it. Here's how to tell whether you're a covered financial entity, what the exemptions actually cover, and why plenty of technology companies are pulled in as ICT providers.
31 July 2026
DORA Article 30 explained: the contractual provisions you actually need
What Article 30 requires in your ICT supplier contracts: the standard provisions, the enhanced set for critical functions, and how to keep them evidenced.
15 June 2026
Building a DORA Register of Information that survives a supervisor
The Register of Information is one of DORA's most concrete deliverables. Here's how to build one that stays accurate and export-ready.
12 June 2026Get DORA-ready with ResiliencePilot
See it on your own data and frameworks, with your security and data-residency questions answered.