For Regulatory Affairs

Regulatory change, mapped to your product data

ESPR delegated acts, EUDR, PPWR and the battery passport all ask for product data and proof. DPP.COM.PL connects product data, regulatory workflows and verifiable evidence in one place, so each new requirement becomes a mapping exercise, not a new project.

The challenge

Every new act asks the same questions in a different format

Regulatory Affairs sits between the legal text and the product data. The hard part is rarely reading the regulation - it is proving, product by product, that the data behind it is complete, current and approved.

  • Moving targets

    ESPR sets the framework, but the data each product group must provide arrives later, in delegated acts. Your data model has to absorb changes without starting over.

  • Evidence in silos

    Declarations, certificates, test reports and supplier statements live in mailboxes and shared drives, detached from the product they prove.

  • Supplier dependence

    Much of the evidence comes from suppliers. Chasing, checking and re-checking it is manual and hard to track.

  • Accountability

    When an authority or a customer asks, you need to show which data was approved, by whom and when - not just the current value.

How it works

From requirement to verifiable evidence

Every requirement follows the same path through the platform. AI assists, people decide, and every step leaves a record.

  1. 01Data

    Map requirements to data fields

    Break each regulation into the data points and documents it needs and link them to product models, batches or items - at the level the product rules require.

  2. 02AI

    Let AI do the first pass

    AI-assisted extraction and mapping pulls candidate values from supplier documents and existing systems. Every suggestion stays a suggestion until a person accepts it.

  3. 03Validate

    Check completeness and rules

    Validation rules flag missing fields, expired certificates and inconsistent values before anything reaches a passport or a report.

  4. 04Workflow

    Route the gaps

    Tasks for suppliers and internal owners, with deadlines and a clear view of what is still missing per product and per regulation.

  5. 05Human approval

    Sign off as a person

    Regulatory or compliance owners review and approve. The approval is recorded with the reviewer, the time and the version of the data they approved.

  6. 06Evidence

    Keep tamper-evident evidence

    Documents and approvals are versioned and anchored with verifiable integrity and timestamps, so you can show later that nothing changed unnoticed.

  7. 07Regulatory outputs

    Publish the outputs

    The same approved data feeds Digital Product Passports, EUDR due diligence data, PPWR labelling data and answers to customers and auditors.

What you get

Built for the people who sign off

  • Requirement mapping

    A requirement catalogue per regulation, linked to product data fields and evidence documents.

  • Versioned data model

    Designed to adapt to product-specific delegated requirements - new fields extend the model instead of replacing it.

  • Audit trail

    Who changed what, who approved it and when - for data and documents alike.

  • Evidence integrity

    Hashes and timestamps make any later change to anchored evidence detectable, including through OpenTimestamps on Bitcoin.

  • Roles and approvals

    Role-based access and approval workflows separate preparing data from signing it off.

  • Answers for authorities and customers

    Share approved data and evidence in a structured form instead of assembling it by hand for every request.

Regulatory scope

One platform, several regimes - each with its own rules

DPP is one output among several. Each regime keeps its own scope, deadlines and evidence - the platform keeps them apart while reusing the same product data.

  • (EU) 2024/1781

    ESPR / DPP - Ecodesign for Sustainable Products Regulation

    Data structure, publication, QR / GS1 Digital Link, EU registry readiness.

    • 2026-2029: Product-specific ESPR delegated acts are expected progressively for priority product groups; exact DPP application dates will be defined separately for each group
    • 20 Jul 2026: EU DPP Registry becomes operational
    Regulation details
  • (EU) 2023/1115

    EUDR - EU Deforestation-free Products Regulation

    Data management, maps, DDS, evidence, supplier collaboration.

    • 30 Dec 2026: EUDR for large and medium companies, and micro and small ones formerly under EUTR
    • 30 Jun 2027: EUDR for other micro and small companies
    Regulation details
  • (EU) 2025/40

    PPWR - Packaging and Packaging Waste Regulation

    Packaging database, compliance rules, labelling data, evidence.

    • 12 Aug 2026: PPWR applies
    • 2028-2040: further requirements in 2028, 2030, 2035, 2038, 2040
    Regulation details
  • Traceability - Product traceability

    Full product genealogy, integrations, audit-ready data.

    • Now: Increasingly important due to multiple EU regulations and market demands
    Regulation details

Clear boundaries

What the platform does - and what stays with you

The platform

  • Structures product data and evidence per regulation
  • Flags gaps, inconsistencies and expiring documents
  • Records approvals, versions and timestamps
  • Prepares DPPs, EUDR data and other outputs from approved data

Your team

  • Interpreting the law for your products and markets
  • Conclusions such as negligible risk under EUDR
  • Legal responsibility as the economic operator
  • Deciding what to share, and with whom

DPP.COM.PL supports compliance; it does not replace legal advice or certify product conformity.

FAQ

Questions we hear from Regulatory Affairs

Does using the platform make our products compliant?
No software can do that on its own. The platform helps you collect, check, approve and evidence the data that compliance depends on. Conclusions and legal responsibility stay with you as the economic operator.
How do you handle requirements that are not final yet?
ESPR sets the framework; product-specific requirements come in delegated acts. The data model is designed to be extended as acts are adopted, so the work you do now on identifiers, materials and supplier evidence carries over.
Can we show an authority what was approved on a given date?
Yes. Data and documents are versioned, approvals record the reviewer and the time, and anchored evidence carries a verifiable timestamp.
Is EUDR part of the Digital Product Passport?
No. EUDR is a separate regime with its own due diligence statement. The platform handles both in one environment and reuses shared data such as suppliers and origin, but keeps the outputs separate.
Can we start with one regulation?
Yes. Most teams start with the regime that has the nearest deadline - EUDR or the battery passport - and add others on the same product data.

Book a compliance workflow demo

We will walk through one of your products: the requirements that apply, the data and evidence behind them and how approvals are recorded.