Common Criteria Certification Tracking

Track Common Criteria certifications.
Act with confidence.

NenkinTracker is a dedicated SaaS platform for monitoring Common Criteria (ISO/IEC 15408) certified products across all CCRA member schemes. Security, compliance, and procurement teams use it to track certifications, detect changes, and keep decisions grounded in current evidence — without manually checking multiple national scheme portals.

  • Track Common Criteria (ISO/IEC 15408) certified products and certificate status changes in one timeline.
  • Follow Security Targets, Protection Profiles, and EAL assurance level context across CCRA member schemes.
  • Cut manual portal checks and spreadsheet reporting overhead.

Trusted by teams in Product Security, Enterprise Procurement, Compliance & GRC, and Common Criteria practice.

Why teams choose NenkinTracker for Common Criteria monitoring

Common Criteria monitoring is detail-heavy. Teams typically track certifications across BSI, ANSSI, NIAP, and other national scheme portals using spreadsheets and manual checks. NenkinTracker turns fragmented certification data into one clear operating view so teams can assess impact faster and act with confidence.

🔍

Certification Tracking

Keep a structured view of Common Criteria certified products, certification reports, and status changes over time.

🛡️

Security Target & PP Context

Track product context tied to Security Targets and Protection Profile alignment so assessments are faster and more consistent.

Change Alerts

Get alerted when relevant product, vendor, or certification information changes instead of manually checking multiple sources.

What NenkinTracker does

NenkinTracker aggregates Common Criteria certification data and monitors it over time. It alerts you when certifications change, expire, or are updated — giving you a reliable source of truth for compliance and risk assessment.

🔍

Centralized CC certification tracking

Aggregate certification data from Common Criteria schemes worldwide into a single structured view. See certified products, certification reports, and status history in one place instead of checking multiple national scheme portals.

📊

Product-centric views across schemes

View certifications organized by product and vendor rather than by scheme. Compare EAL levels, Protection Profile conformance, and Security Target scope across different certification bodies like BSI, ANSSI, NIAP, and others.

Change detection and alerts

Get notified when certifications change status — new certifications, expirations, maintenance updates, or archived entries. Stop manually checking commoncriteriaportal.org and national scheme websites.

📋

Historical data and reporting

Access structured timelines of certification events for any product or vendor. Export evidence for audits, procurement decisions, and compliance documentation.

Built for Common Criteria & ISO 15408 compliance workflows

01

Faster Investigations

Move from scattered CC evidence to structured product timelines across all CCRA schemes.

02

Lower Reporting Friction

Share current certificate status and deltas with less manual effort. Export for audits.

03

Better Risk Awareness

Catch certification changes early — expirations, maintenance updates, new evaluations.

Built from field experience

NenkinTracker was originally built to solve real internal operational needs in Common Criteria certification monitoring and compliance evidence tracking. It is designed for teams who need to move from interpretation to demonstration — turning fragmented CC data into actionable intelligence.

What is Common Criteria?

Common Criteria (CC) is the international standard for evaluating the security of IT products, formally published as ISO/IEC 15408. Under CC, products are tested by accredited evaluation labs against defined security requirements called Security Targets, optionally conforming to Protection Profiles. Evaluations are performed at one of seven Evaluation Assurance Levels (EAL1–EAL7), and successful products receive certificates from national scheme bodies like BSI (Germany), ANSSI (France), NIAP (USA), or CCCS (Canada).

Through the Common Criteria Recognition Arrangement (CCRA), certificates are mutually recognized across 31 member nations, making CC certification a key requirement in government procurement and regulated industries. NenkinTracker helps teams keep track of this complex certification landscape automatically.

Common Criteria certification FAQ

What is Common Criteria certification?

Common Criteria (CC) is the international standard for IT security evaluation, formally known as ISO/IEC 15408. Products are evaluated against Security Targets and Protection Profiles at Evaluation Assurance Levels (EAL1–EAL7) by accredited labs, then certified by national schemes like BSI (Germany), ANSSI (France), or NIAP (USA). Certificates are mutually recognized across 31 nations through the CCRA.

What are EAL levels in Common Criteria?

EAL (Evaluation Assurance Level) ranges from EAL1 (functionally tested) to EAL7 (formally verified). Higher levels require more rigorous testing and documentation. Most commercial products target EAL2–EAL4. The level indicates how thoroughly the product was evaluated, not how secure it is.

How do I track Common Criteria certified products?

NenkinTracker aggregates certification data from the Common Criteria portal and national scheme databases into one searchable, structured dashboard. Instead of manually checking multiple websites, you get a unified view with change alerts when certifications are issued, updated, or expire.

Who is NenkinTracker built for?

Security, GRC, procurement, and product teams working with Common Criteria certified products and related evidence. Anyone who needs to monitor CC certifications for risk assessment, vendor evaluation, or compliance reporting.

Can NenkinTracker fit existing compliance processes?

Yes. NenkinTracker complements your existing controls by centralizing CC evidence collection and highlighting meaningful certification changes. Export data for audits and integrate into your existing GRC workflows.

How quickly can we start?

You can create an account and begin tracking Common Criteria certified products in just a few minutes. No installation required — NenkinTracker is a web-based SaaS platform.

Who built NenkinTracker?

NenkinTracker was built from extensive field experience in Common Criteria evaluation and compliance operations, originally created to solve real internal needs in certification monitoring and evidence tracking.

Ready to modernize Common Criteria tracking?

Start using NenkinTracker today at tracker.nenkin.io.

Create your free account