The European Commission has updated the categories of civil aviation safety events subject to mandatory reporting, introducing new requirements covering unmanned aircraft systems (UAS), U-space operations and information security.
Implementing Regulation (EU) 2026/1821 amends Regulation (EU) 2015/1018, which sets out the categories of occurrences subject to mandatory reporting under Regulation (EU) No 376/2014.
The revised regulation introduces a new Annex VI covering events specific to UAS operations. It also adds mandatory reporting of events related to U-space traffic management and U-space service provider (USSP) services.
Information-security events that could affect operational safety are also included, with examples including malware, distributed denial-of-service (DDoS) attacks and data compromise. Some aviation security events have been removed or rationalised to avoid duplication with existing aviation security requirements.
Italy’s civil aviation authority ENAC said affected stakeholders should review or develop their internal procedures to comply with the updated reporting obligations. ENAC’s reporting guidance also confirms that mandatory occurrences covered by the new regulation must be reported to the relevant national authority.
For more information
ENAC
Image: ENAC

