|
18 Jan 2024
|
Software Updates: Proposal for amendments to RE3-Annex 7 (UK)
|
TFCS-28-09
|
2024-01-18 |
UK |
|
11 Mar 2024
|
RE3: Proposal for amendments to Annex 7 (SWIN) (UK)
|
TFCS-29-06
|
2024-03-11 |
UK |
|
18 Nov 2024
|
Proposal for RxSWIN implementation (UK)
|
TFCS-33-03/Rev.1
|
2024-11-18 |
UK |
|
18 Nov 2024
|
CS/OTA task force: Proposal to update the terms of reference (UK)
|
TFCS-33-06/Rev.1
|
2024-11-18 |
UK |
|
1 Sep 2025
|
Numbering system for software update approvals (UK)
|
TFCS-35-05
|
2025-09-01 |
UK |
|
1 Sep 2025
|
UN R155: Separate technical units, component approvals, and multistage vehicles (UK)
|
TFCS-35-06
|
2025-09-01 |
UK |
|
1 Sep 2025
|
UN R155: Proposal for a Supplement (software development and fleet operation) (UK)
|
TFCS-35-07
|
2025-09-01 |
Proposal to address two gaps identified in the requirements of UNR 155 regarding:<ol class="alpha"><li>Software development and</li><li>Vehicle with an ADS Feature of Type 2 where vehicle operation is overseen by an organisation responsible for operating the vehicle or fleet of vehicles.</li></ol>
UK |
|
20 Apr
|
UN R155: Concept for STU approvals (UK)
|
TFCS-37-07
|
2026-04-20 |
This document presents an initial concept for approvals of devices as components or separate technical units according to UN R155, and the installation of such devices on vehicles already holding UN R155 approval, based on Supplement 3 to the original series. The regulation applies to vehicles of categories L<sub>1</sub>–L<sub>7</sub>, M<sub>1</sub>–M<sub>3</sub>, N<sub>1</sub>–N<sub>3</sub>, and O<sub>1</sub>–O<sub>4</sub> with electronic control units, and to approval of components and separate technical units with regard to their cyber security. Approval authorities shall grant type approval only to vehicle or electrical/electronic sub-assembly types that satisfy the regulation's requirements through document checks and testing. Manufacturers must demonstrate cyber security management systems covering development, production, and post-production phases, including risk assessment, mitigation implementation, monitoring, and response to cyber-attacks. Certificates of Compliance for Cyber Security Management Systems remain valid for three years. UK |
|
20 Apr
|
UN R155: Presentation on STU approval concept (UK)
|
TFCS-37-08
|
2026-04-20 |
TFCS-37-08 presents proposals to amend UN R155 to establish approval routes for electrical/electronic sub-assemblies and separate technical units. The regulation introduces three parts: Part I covers vehicle cyber security approval; Part II covers component and separate technical unit approval; Part III covers installation approval of approved components and separate technical units in vehicles. Updates include new definitions, application procedures by manufacturers or their representatives, approval conditions specifying connection limitations, and cyber security management system requirements. The proposal requests colleague review and feedback. UK |
|
20 Apr
|
UN R155: Proposal on operator risks (UK)
|
TFCS-37-09
|
2026-04-20 |
Proposal to amend Table A1 of Annex 5 to include high level and sub-level descriptions of vulnerability and threat including spoofing of messages, Sybil attacks, communication channels permitting code injection, manipulation, overwrite and erasure of vehicle held data and code, denial of service attacks, unauthorized access to vehicle systems, viruses in communication media, and malicious messages, and amend Table B1 of Annex 5 to provide corresponding mitigation measures. This proposal is a further elaboration of TFCS-35-07. UK |
|
20 Apr
|
UN R155: Presentation on proposal to address operator risks (UK)
|
TFCS-37-10
|
2026-04-20 |
UN R155 addresses operator risks in automated driving systems. The ADS Regulation enables operators to offer services using automation and permits remote termination of the ADS. UN R155 mandates that supplier-related risks are managed, but operators are customers, not suppliers, creating downstream risks. An automated vehicle could be susceptible to unauthorised requests from an operator experiencing cyber attack. UN R155 does not define how downstream organisational risks are managed. Manufacturers should identify risks posed by operators and inform Third Party Operators of risks involved and expected minimum-security controls for workstations interfacing with an ADS. This could be achieved via Annex 5. UK |
|
22 Apr
|
CSMS and SUMS: Comments on TFCS-37-02 (UK)
|
TFCS-37-11
|
2026-04-22 |
Germany proposes that the TAA granting UN R155 or UN R156 type approvals shall be obliged to only use CSMS or SUMS certificates signed by the same TAA. Issues identified include that CSMS and SUMS are Management Systems covering entire manufacturers' organizations, mandating the same TAA will have huge consequences for OEMs using multiple TAAs, and no such obligation exists for ISO 9001 and ISO 14001. A possible way forward in the short term is to keep text unchanged to allow different TAAs for Management Systems CoC and type approval based on voluntary acceptance and implement wording on information exchange and procedure if different TAAs involved. UK |
|
23 Jun
|
UN R155: Questions concerning separate technical units (UK)
|
TFCS-38-04
|
2026-06-23 |
Questions address whether minimum vehicle architecture approval should be required before Part III can be used for additional devices; whether approved ESAs can be incorporated in original vehicle approval or as an extension to Part I approval; whether different terminology should replace CSMS for Part III approvals; whether second Part III approvals are permissible for vehicles already approved to Parts I and III; and what implications arise from end-of-support by ESA manufacturers. UK |
|
23 Jun
|
UN R155: Response to questions concerning separate technical unit approvals (UK)
|
TFCS-38-05
|
2026-06-23 |
Answers to questions on separate technical unit approvals under UN R155 clarify that a base vehicle must already hold an R155 type approval before an ESA can be added at Part III; approval authorities for different parts may differ with mutual recognition applying; the end of support period for an ESA manufacturer must be communicated to the vehicle manufacturer, with implications to be discussed by the IWG; installation of ESAs must follow vehicle manufacturer instructions without necessarily requiring separate agreement; STU data sharing agreements are required; and after ESA installation, a whole vehicle cyber security risk assessment is not necessary, though Part III must consider risks where ESA and base vehicle interactions occur. A working document is planned for submission to GRVA in January 2027. The IWG will explore whether Part II components may include equipment from certificated base vehicles under UN R155 multi-stage categorization and discuss incorporating STU into original approvals. UK |
|
29 Jun
|
UN R155: Proposal to amend GRVA-25-32 (UK)
|
TFCS-38-10
|
2026-06-29 |
Amend para. AI to replace the heading "Examples of documents/evidence that could be provided" with "Explanation of the requirement" and insert text stating that Part C of this document provides further guidance on the application of the Regulation to vehicles which have been modified by carrying out a transformation of the vehicle. UK |
|
1 Jul
|
Cyber security: Vehicle modification use cases (UK)
|
TFCS-38-11
|
2026-07-01 |
The document presents vehicle modification use cases categorized into four cases and additional scenarios. Case 1 covers components with negligible risk or cyber-relevant non-automotive devices. Case 2 addresses cyber-relevant automotive devices approved to specific regulatory requirements, requiring installation approval and vehicle type re-approval. Case 3a addresses cyber-relevant devices not approved to specific requirements, requiring component or STU approval. Case 3b covers devices controlling vehicle functions, also requiring component or STU approval. Case 4 encompasses invasive modifications or complex interactions not covered by other cases. UK |
|
28 Aug
|
UN R155: Proposal to amend the Interpretation Document (UK)
|
TFCS-39-02
|
2026-08-28 |
Proposal to amend Paragraph B to insert new requirement 5.1.3 establishing that the Approval Authority or Technical Service shall refuse to grant type approval regarding cyber security where the vehicle manufacturer has not fulfilled requirements in paragraph 7.3., notably that the Certificate of Compliance for the Cyber Security Management System has not been issued by the same Approval Authority granting the type approval, add explanatory text clarifying that this ensures Article 2(2) of the 1958 Agreement compliance while permitting cooperation between Approval Authorities and acceptance of prior documentation, amend Paragraph K to remove existing guidance text in paragraphs 6.1 and 7.1 regarding Certificate of Compliance issuance and inter-Authority arrangements, and insert statement that no guidance is included regarding paragraph 6 requirements. These changes support proposal GRVA/2026/30. UK |
|
28 Aug
|
UN R155: Concept for approval of components (UK)
|
TFCS-39-04
|
2026-08-28 |
This document presents a concept for approvals of electrical/electronic sub-assemblies (ESAs) as components according to UN R155, and the installation of such approved components on vehicles already holding UN R155 approval. The proposal removes the possibility of separate technical unit (STU) approvals as a first step, limiting coverage to components connected only to power and/or reading data through approved existing interfaces. The document restructures UN R155 into three parts: Part I covers vehicle type approvals; Part II covers ESA component approvals with cybersecurity requirements; Part III covers vehicle type approvals regarding installation of approved ESAs. Requirements include cybersecurity management systems, risk assessments, threat mitigations, and reporting provisions for development, production, and post-production phases. UK |
|
2 Sep
|
RxSWIN: Option 7 (UK)
|
TFCS-39-09
|
2026-09-02 |
UK |
|
2 Sep
|
RxSWIN: Option 8 (UK)
|
TFCS-39-10
|
2026-09-02 |
UK |
|
3 Jun 2019
|
UK comments on cybersecurity interpretation document (UK)
|
TFCS-TPahCS2-05
|
2019-06-03 |
UK |
|
11 Jun 2019
|
Cybersecurity regulation interpretation document-combined comments (UK)
|
TFCS-TPahCS2-07
|
2019-06-11 |
UK |
|
18 Mar 2019
|
Software updates: UK comments on the draft interpretation document (UK)
|
TFCS-TPahSU1-02
|
2019-03-18 |
UK |
|
3 Jun 2019
|
UK comments on the software updates interpretation paper (UK)
|
TFCS-TPahSU3-05
|
2019-06-03 |
UK |
|
11 Jun 2019
|
Software updates: Consolidated interpretation document, including CLEPA and UK comments (UK)
|
TFCS-TPahSU3-07
|
2019-06-11 |
UK |
|
8 Mar 2017
|
Japan and UK input for the table of cybersecurity threats (Japan and UK)
|
TFCS-ahT-01-03
|
2017-03-08 |
Japan UK |
|
4 Jan 2019
|
UK comments on the draft reversing warning devices regulation (UK)
|
TFRA-04-04
|
2019-01-04 |
UK |
|
22 Jun 2011
|
GTR on tyres – Rationale and justification: New proposal from MM Gauvin (Sponsor) and Yarnold (Chair) (France and UK)
|
TYREGTR-11-03
|
2011-06-22 |
France UK |
|
19 Mar 2021
|
UN R157: Proposal for detectable collisions and emergency vehicles (UK)
|
UNR157-03-11
|
2021-03-19 |
UK |
|
16 Apr 2021
|
UN R157: Summary of proposal for emergency vehicles and detectable collisions (UK)
|
UNR157-04-11
|
2021-04-16 |
UK |
|
9 Jun 2021
|
UN R157: Draft proposal concerning detectable collision (UK)
|
UNR157-06-06
|
2021-06-09 |
UK |
|
13 Sep 2021
|
UN R157: Comments on draft text of amendments (UK)
|
UNR157-08-16
|
2021-09-13 |
UK |
|
9 Dec 2021
|
UN R157: Proposal for "detectable collisions" (UK)
|
UNR157-11-15
|
2021-12-09 |
UK |
|
9 Dec 2021
|
UN R157: Proposal for amendments to lane-change text (UK)
|
UNR157-11-16
|
2021-12-09 |
UK |
|
18 Jan 2022
|
UN R157: Contribution to ALKS lane-change discussions (UK)
|
UNR157-12-10/Rev.1
|
2022-01-18 |
UK |
|
14 Feb 2022
|
UN R157: Proposal to amend document GRVA-12-52 (UK)
|
UNR157-13-06
|
2022-02-14 |
UK |
|
9 May 2023
|
UK work on V2X (UK)
|
VCTF-01-04
|
2023-05-09 |
UK |
|
1 Apr 2019
|
Audit of complex electronic systems (UK)
|
VMAD-02-03/Rev.1
|
2019-04-01 |
UK |
|
28 Oct 2020
|
Comments on the VMAD Master Document (UK)
|
VMAD-14-08
|
2020-10-28 |
UK |
|
8 Jul 2022
|
Automated driving: Comments on the NATM master document (UK)
|
VMAD-27-04
|
2022-07-08 |
UK |
|
26 Aug 2021
|
VMAD Master Document: Comments on the Scenarios chapter (UK)
|
VMAD-SG1-18-02
|
2021-08-26 |
UK |
|
26 Aug 2021
|
VMAD Master Document: Comments on the Scenarios Annex (UK)
|
VMAD-SG1-18-03
|
2021-08-26 |
UK |
|
28 Aug 2023
|
Proposal for traffic scenarios template (UK)
|
VMAD-SG1-27-04/Rev.1
|
2023-08-28 |
UK |
|
7 Dec 2021
|
ADS: Comments on draft in-service monitoring/reporting requirements (UK)
|
VMAD-SG3-15-04
|
2021-12-07 |
UK |
|
14 Dec 2021
|
ADS: Comments on in-service monitoring/reporting requirements (UK)
|
VMAD-SG3-16-04
|
2021-12-14 |
UK |
|
14 Dec 2021
|
ADS: Proposal to address cyber security under in-service monitoring/reporting (UK)
|
VMAD-SG3-16-07
|
2021-12-14 |
Proposal to confirm that the aspects of the CSMS related to the cyber security monitoring activities, as defined in paragraph 7.2.2.2.(g), continue to be applied properly after Development Phase and that the relevant cyber security mitigations implemented continue to be effective.
UK |
|
2 Feb 2022
|
ADS: Comments on draft in-service monitoring/reporting requirements (UK)
|
VMAD-SG3-17-02
|
2022-02-02 |
UK |
|
20 Oct 2022
|
ADS Safety Management Systems: Suggestions for the NATM Master Document (UK)
|
VMAD-SG3-23-04
|
2022-10-20 |
UK |
|
30 Oct 2020
|
Comments on the draft Audit/In-Use Performance sections of the VMAD Master Document (UK)
|
VMAD-SG3-3.1-01
|
2020-10-30 |
UK |
|
16 Nov 2023
|
ADS: Comments on audit, safety management system, and in-service montoring/reporting (Canada and UK)
|
VMAD-SG3-30-08
|
2023-11-16 |
Canada UK |