Share this
What is TAA (Trade Agreements Act) Compliance?
by Brett Daniel on Feb 17, 2021 3:03:08 PM
Table of Contents
- What is TAA?
- What is TAA compliance?
- Which countries are TAA-compliant?
- Which countries are not TAA-compliant?
- What is a TAA certification?
- How do you become TAA-compliant?
- How do you know if a product is TAA-compliant?
- Does software need to be TAA-compliant?
- Why is TAA compliance important?
TAA compliance is a hot topic right now for those looking to acquire goods and services wholly made or substantially transformed in the United States or trusted countries.
If you're involved with GSA Schedules, IDIQ contracts, or DoD contracts and need to verify TAA compliance, then this is the blog post for you.
We'll cover TAA, TAA compliance, the meaning of substantial transformation, provide a list of TAA-compliant countries and non-TAA countries, as well as discuss the TAA certification process, determining whether products are TAA-compliant, and how software fits into the equation.
What is TAA?
TAA is an acronym for the United States Trade Agreements Act (TAA) of 1979.
Passed by the 96th U.S. Congress in 1979, the TAA is a piece of legislation approving and implementing multiple trade agreements previously enacted and negotiated between the U.S. and other countries under the Trade Act of 1974.
The General Services Administration (GSA), whose contracts, unless otherwise stated, require TAA compliance, defines the TAA this way:
The TAA is an enabling statute (meaning that it grants new or previously prohibited powers to a person or entity - in this case, the federal government) that implements numerous multilateral (three or more countries) and bilateral (two countries) international trade agreements and other initiatives.
Here's what you NEED to know: The TAA allows government program management offices to restrict their procurement of goods and services to products that are manufactured or wholly transformed in the U.S. or a TAA-designated country.
The TAA has four primary purposes, listed themselves at the beginning of the Act:
- To approve and implement the trade agreements negotiated under the Trade Act of 1974
- To foster the growth and maintenance of an open world trading system.
- To expand opportunities for the commerce of the United States in international trade
- To improve the rules of international trade and to provide for the enforcement of such rules.
What is TAA compliance?
A good or service is TAA-compliant if manufactured or substantially transformed in the United States or manufactured in a TAA-designated country. A TAA-designated country is a nation with which the U.S. maintains a trade agreement and regards as a reliable or acceptable procurement source.
Now, what does "substantially transformed" mean? It means that the product has become a new and different commerce article in terms of name, character, or use.
Overall, substantial transformation is a subjective determination. It can get murky and is handled on a case-by-case basis. The determination requires in-depth analysis and fact-gathering about product manufacturing and sourcing on behalf of a contractor should they be tasked with verifying TAA compliance.
TAA substantial transformation examples
U.S. case law has shown that "simple assembly" operations do not constitute substantial transformation.
For example, in Uniroyal, Inc. v. United States, an early 1980s case about footwear imports, the U.S. Court of Appeals ruled that attaching an outsole to an upper (shoes without soles) does not substantially transform the upper, which is already a substantially complete shoe.
A 2007 CBP ruling found that a cellphone was substantially transformed when programmed with computer software that allowed it to "function as a testing tool for telecommunication networks."
A 2009 CBP ruling found that a USB flash device programmed in the U.S. was substantially transformed, although its firmware and application software had been developed elsewhere.
A 2011 CBP ruling found that fit-together glue and screw operations performed in Taiwan were insufficient in substantially transforming certain Chinese modules.
A 2013 CBP ruling found that Ethernet switches assembled in Malaysia and shipped to Singapore, where U.S. software was downloaded onto the switches, were not substantially transformed. The mere downloading of the software did not constitute programming, and as such, the country of origin was determined to be Malaysia.
A 2014 CPB ruling found that cutting a CO2 tube, which imparted an essential character of the product, and attaching four other components, did not substantially transform the tube.
Unless otherwise listed, TAA compliance applies to all GSA Schedules, defined by the GSA as "long-term governmentwide contracts with commercial companies that provide access to millions of commercial products and services at fair and reasonable prices to the government."
Essentially, the GSA, which is dedicated to procuring goods and services for the government via its Federal Acquisition Service (FAS), the procurement arm of the federal government, likes to know that these goods and services support the American economy and originate from trustworthy, vetted sources.
Which countries are TAA-compliant?
A frequently asked question is whether China and Japan are TAA-compliant, so we'll address this inquiry first.
As of 2021, China is not TAA-compliant, and Japan is TAA-compliant.
There are four officially recognized groups of countries that are considered TAA-compliant as of 2021. The Federal Acquisition Regulation (FAR) lists these groups and the countries they comprise.
- World Trade Organization (WTO) Government Procurement Agreement Countries
- Caribbean Basin Countries
- Least Developed Countries
- Free Trade Agreement Countries
The following countries, organized by their officially designated groups, are TAA-compliant as of 2021:
WTO GPA Countries
- Armenia
- Aruba
- Australia
- Austria
- Belgium
- Bulgaria
- Canada
- Croatia
- Cyprus
- Czech Republic
- Denmark
- Estonia
- Finland
- France
- Germany
- Greece
- Hong Kong
- Hungary
- Iceland
- Ireland
- Israel
- Japan
- Republic of Korea
- Latvia
- Liechtenstein
- Lithuania
- Luxembourg
- Malta
- Moldova
- Montenegro
- Netherlands
- New Zealand
- Norway
- Poland
- Portugal
- Romania
- Singapore
- Slovak Republic
- Slovenia
- Spain
- Sweden
- Switzerland
- Taiwan
- Ukraine
- United Kingdom
Free Trade Agreement Countries
- Australia
- Bahrain
- Canada
- Chile
- Colombia
- Costa Rica
- Dominican Republic
- El Salvador
- Guatemala
- Honduras
- Republic of Korea
- Mexico
- Morocco
- Nicaragua
- Oman
- Panama
- Peru
- Singapore
Least Developed Countries
- Afghanistan
- Angola
- Bangladesh
- Benin
- Bhutan
- Burkina Faso
- Burundi
- Cambodia
- Central African Republic
- Chad
- Comoros
- Democratic Republic of Congo
- Djibouti
- Equatorial Guinea
- Eritrea
- Ethiopia
- Gambia
- Guinea
- Guinea-Bissau
- Haiti
- Kiribati
- Laos
- Lesotho
- Liberia
- Madagascar
- Malawi
- Mali
- Mauritania
- Mozambique
- Nepal
- Niger
- Rwanda
- Samoa
- Sao Tome and Principe
- Senegal
- Sierra Leone
- Solomon Islands
- Somalia
- South Sudan
- Tanzania
- Timor-Leste
- Togo
- Tuvalu
- Uganda
- Vanuatu
- Yemen
- Zambia
Caribbean Basin Countries
- Antigua and Barbuda
- Aruba
- Bahamas
- Barbados
- Belize
- Bonaire
- British Virgin Islands
- Curacao
- Dominica
- Grenada
- Guyana
- Haiti
- Jamaica
- Montserrat
- Saba
- St. Kitts and Nevis
- St. Lucia
- St. Vincent and the Grenadines
- Sint Eustatius
- Sint Maarten
- Trinidad and Tobago
Which countries are not TAA-compliant?
As of 2021, countries that are not TAA-compliant include the following:
- China
- India
- Indonesia
- Iran
- Iraq
- Malaysia
- Pakistan
- Sri Lanka
- Russia
- Brazil
Goods and services wholly manufactured or substantially transformed in these countries constitute a violation of GSA Schedule terms and conditions, assuming no exceptions exist.
Now, if goods or services have been assembled in, or consist of numerous components from, multiple countries, TAA-compliant or not, a determination of substantial transformation must be made, and this can get a little challenging.
What is a TAA certification?
There is no official TAA certification. The responsibility of verifying TAA compliance rests solely on the contractor or supplier required to comply.
If proof of TAA compliance were requested, an organization would most likely have to perform an analysis of their operations and gather data on product or component sourcing to satisfy the TAA's made in the USA, made in a TAA-designated country, or substantially transformed requirements.
Think of verifying TAA compliance as more of an internal certification process than a formal process handled by a certifying body or entity. The results of the certification would be provided to any requestor, such as the GSA, for proof of TAA compliance.
How do you become TAA-compliant?
TAA compliance is achieved by manufacturing one's products wholly in the USA or a TAA-designated country or meeting the substantially transformed requirement.
Here's a good rule of thumb to remember: At least 50 percent of product production must occur in a TAA-designated country to be considered TAA-compliant.
How do you know if a product is TAA-compliant?
The best way to determine whether a product is TAA-compliant is to ask the manufacturer.
Some manufacturers list TAA compliance statements, policies, or internal analyses on their websites. If they don't have them listed, ask them for copies. This is a great way to verify their compliance.
With some companies, like Trenton Systems, TAA compliance is evident. Still, others, such as those who advertise that their products are made in the USA but whose manufacturing and sourcing locations indicate otherwise, may require additional inquiries to verify TAA compliance.
Regardless, if you're an acquisition specialist or contractor and need to verify TAA compliance, manufacturers of interest, especially those who claim that they're TAA-compliant, should be more than happy to provide you with TAA verification documentation.
Does software need to be TAA-compliant?
TAA compliance applies to software as well and has a similar verification process. CBP mostly focuses on the origin of the final software build to verify TAA compliance.
For example, a 2012 CBP ruling found that an open-source software program was, in fact, substantially transformed in the country where the final software build took place, even though some of the source code had been developed in China.
Why is TAA compliance important?
Toni Hauck, Trenton Systems' Director of Quality Control, recently shared her thoughts on why TAA compliance is necessary for many aerospace and defense customers.
Part of our business model is being able to effectively service the military and aerospace industries with customer-driven computing solutions, and there's a focus on TAA compliance within these industries for those solutions. It's a requirement laid out within a lot of our contracts, and we want to be compliant with the federal regulations flowed down to us regarding being able to properly service these military and defense contracts. It's probably also recently been highlighted because of the issues with Supermicro and other cybersecurity concerns surrounding technology offshoring.
Toni Hauck, Director of Quality Control
As a manufacturer of made-in-USA, high-performance computing solutions, Trenton Systems is considered TAA-compliant.
For more information, review our TAA compliance statement.
Hauck also recommends Trade Agreements Act (TAA) Compliance for Federal Contractors,
Trenton Systems also places great emphasis on building cybersecure computing solutions that secure each layer of the system stack, from hardware to the operating system. This is supported by our TAA compliance, as well as our Counterfeit Protection Program (CPP) and supplier verification plan.
If you're interested in acquiring a TAA-compliant, cybersecure, high-performance computing solution, don't hesitate to reach out to us. We're here for you.
References
TAA-Designated Countries, Trade Agreements Act of 1979, Trade Act of 1974, What Does TAA Compliance Mean?, Federal Acquisition Regulation (FAR), GSA Vendor Support Center, How Does TAA Compliance Impact Your GSA Schedule?, VA Office of Procurement, Acquisition, and Logistics (OPAL), A List of TAA-Designated Countries, TAA Compliance, Trade Agreements Act (TAA) Compliance for Federal Contractors by Federal Publications Seminars.
Share this
- High-performance computers (42)
- Military computers (38)
- Rugged computers (32)
- Cybersecurity (25)
- Industrial computers (25)
- Military servers (24)
- MIL-SPEC (20)
- Rugged servers (19)
- Press Release (17)
- Industrial servers (16)
- MIL-STD-810 (16)
- 5G Technology (14)
- Intel (13)
- Rack mount servers (12)
- processing (12)
- Computer hardware (11)
- Edge computing (11)
- Rugged workstations (11)
- Made in USA (10)
- Partnerships (9)
- Rugged computing (9)
- Sales, Marketing, and Business Development (9)
- Trenton Systems (9)
- networking (9)
- Peripheral Component Interconnect Express (PCIe) (7)
- Encryption (6)
- Federal Information Processing Standards (FIPS) (6)
- GPUs (6)
- IPU (6)
- Joint All-Domain Command and Control (JADC2) (6)
- Server motherboards (6)
- artificial intelligence (6)
- Computer stress tests (5)
- Cross domain solutions (5)
- Mission-critical servers (5)
- Rugged mini PCs (5)
- AI (4)
- BIOS (4)
- CPU (4)
- Defense (4)
- Military primes (4)
- Mission-critical systems (4)
- Platform Firmware Resilience (PFR) (4)
- Rugged blade servers (4)
- containerization (4)
- data protection (4)
- virtualization (4)
- Counterfeit electronic parts (3)
- DO-160 (3)
- Edge servers (3)
- Firmware (3)
- HPC (3)
- Just a Bunch of Disks (JBOD) (3)
- Leadership (3)
- Navy (3)
- O-RAN (3)
- RAID (3)
- RAM (3)
- Revision control (3)
- Ruggedization (3)
- SATCOM (3)
- Storage servers (3)
- Supply chain (3)
- Tactical Advanced Computer (TAC) (3)
- Wide-temp computers (3)
- computers made in the USA (3)
- data transfer (3)
- deep learning (3)
- embedded computers (3)
- embedded systems (3)
- firmware security (3)
- machine learning (3)
- Automatic test equipment (ATE) (2)
- C6ISR (2)
- COTS (2)
- COVID-19 (2)
- Compliance (2)
- Compute Express Link (CXL) (2)
- Computer networking (2)
- Controlled Unclassified Information (CUI) (2)
- DDR (2)
- DDR4 (2)
- DPU (2)
- Dual CPU motherboards (2)
- EW (2)
- I/O (2)
- Military standards (2)
- NVIDIA (2)
- NVMe SSDs (2)
- PCIe (2)
- PCIe 4.0 (2)
- PCIe 5.0 (2)
- RAN (2)
- SIGINT (2)
- SWaP-C (2)
- Software Guard Extensions (SGX) (2)
- Submarines (2)
- Supply chain security (2)
- TAA compliance (2)
- airborne (2)
- as9100d (2)
- chassis (2)
- data diode (2)
- end-to-end solution (2)
- hardware security (2)
- hardware virtualization (2)
- integrated combat system (2)
- manufacturing reps (2)
- memory (2)
- mission computers (2)
- private 5G (2)
- protection (2)
- secure by design (2)
- small form factor (2)
- software security (2)
- vRAN (2)
- zero trust (2)
- zero trust architecture (2)
- 3U BAM Server (1)
- 4G (1)
- 4U (1)
- 5G Frequencies (1)
- 5G Frequency Bands (1)
- AI/ML/DL (1)
- Access CDS (1)
- Aegis Combat System (1)
- Armed Forces (1)
- Asymmetric encryption (1)
- C-RAN (1)
- COMINT (1)
- CPUs (1)
- Cloud-based CDS (1)
- Coast Guard (1)
- Compliance testing (1)
- Computer life cycle (1)
- Containers (1)
- D-RAN (1)
- DART (1)
- DDR5 (1)
- DMEA (1)
- Data Center Modular Hardware System (DC-MHS) (1)
- Data Plane Development Kit (DPDK) (1)
- Defense Advanced Research Projects (DARP) (1)
- ELINT (1)
- EMI (1)
- EO/IR (1)
- Electromagnetic Interference (1)
- Electronic Warfare (EW) (1)
- FIPS 140-2 (1)
- FIPS 140-3 (1)
- Field Programmable Gate Array (FPGA) (1)
- Ground Control Stations (GCS) (1)
- Hardware-based CDS (1)
- Hybrid CDS (1)
- IES.5G (1)
- ION Mini PC (1)
- IP Ratings (1)
- IPMI (1)
- Industrial Internet of Things (IIoT) (1)
- Industry news (1)
- Integrated Base Defense (IBD) (1)
- LAN ports (1)
- LTE (1)
- Life cycle management (1)
- Lockheed Martin (1)
- MIL-S-901 (1)
- MIL-STD-167-1 (1)
- MIL-STD-461 (1)
- MIL-STD-464 (1)
- MOSA (1)
- Multi-Access Edge Computing (1)
- NASA (1)
- NIC (1)
- NIC Card (1)
- NVMe (1)
- O-RAN compliant (1)
- Oil and Gas (1)
- Open Compute Project (OCP) (1)
- OpenRAN (1)
- P4 (1)
- PCIe card (1)
- PCIe lane (1)
- PCIe slot (1)
- Precision timestamping (1)
- Product life cycle (1)
- ROM (1)
- Raytheon (1)
- Remotely piloted aircraft (RPA) (1)
- Rugged computing glossary (1)
- SEDs (1)
- SIM Card (1)
- Secure boot (1)
- Sensor Open Systems Architecture (SOSA) (1)
- Small form-factor pluggable (SFP) (1)
- Smart Edge (1)
- Smart NIC (1)
- SmartNIC (1)
- Software-based CDS (1)
- Symmetric encryption (1)
- System hardening (1)
- System hardening best practices (1)
- TME (1)
- Tech Partners (1)
- Total Memory Encryption (TME) (1)
- Transfer CDS (1)
- USB ports (1)
- VMEbus International Trade Association (VITA) (1)
- Vertical Lift Consortium (VLC) (1)
- Virtual machines (1)
- What are embedded systems? (1)
- Wired access backhaul (1)
- Wireless access backhaul (1)
- accredidation (1)
- aerospace (1)
- air gaps (1)
- airborne computers (1)
- asteroid (1)
- authentication (1)
- autonomous (1)
- certification (1)
- cognitive software-defined radios (CDRS) (1)
- command and control (C2) (1)
- communications (1)
- cores (1)
- custom (1)
- customer service (1)
- customer support (1)
- data linking (1)
- data recording (1)
- ethernet (1)
- full disk encryption (1)
- hardware monitoring (1)
- heat sink (1)
- hypervisor (1)
- in-house technical support (1)
- input (1)
- integrated edge solution (1)
- international business (1)
- licensed spectrum (1)
- liquid cooling (1)
- mCOTS (1)
- microelectronics (1)
- missile defense (1)
- mixed criticality (1)
- moving (1)
- multi-factor authentication (1)
- network slicing (1)
- neural networks (1)
- new headquarters (1)
- next generation interceptor (1)
- non-volatile memory (1)
- operating system (1)
- output (1)
- outsourced technical support (1)
- post-boot (1)
- pre-boot (1)
- private networks (1)
- public networks (1)
- radio access network (RAN) (1)
- reconnaissance (1)
- secure flash (1)
- security (1)
- self-encrypting drives (SEDs) (1)
- sff (1)
- software (1)
- software-defined radios (SDRs) (1)
- speeds and feeds (1)
- standalone (1)
- storage (1)
- systems (1)
- tactical wide area networks (1)
- technical support (1)
- technology (1)
- third-party motherboards (1)
- troposcatter communication (1)
- unlicensed spectrum (1)
- volatile memory (1)
- vpx (1)
- zero trust network (1)
- November 2024 (1)
- October 2024 (1)
- August 2024 (1)
- July 2024 (1)
- May 2024 (1)
- April 2024 (3)
- February 2024 (1)
- November 2023 (1)
- October 2023 (1)
- July 2023 (1)
- June 2023 (3)
- May 2023 (7)
- April 2023 (5)
- March 2023 (7)
- December 2022 (2)
- November 2022 (6)
- October 2022 (7)
- September 2022 (8)
- August 2022 (3)
- July 2022 (4)
- June 2022 (13)
- May 2022 (10)
- April 2022 (4)
- March 2022 (11)
- February 2022 (4)
- January 2022 (4)
- December 2021 (1)
- November 2021 (4)
- September 2021 (2)
- August 2021 (1)
- July 2021 (2)
- June 2021 (3)
- May 2021 (4)
- April 2021 (3)
- March 2021 (3)
- February 2021 (8)
- January 2021 (4)
- December 2020 (5)
- November 2020 (5)
- October 2020 (4)
- September 2020 (4)
- August 2020 (6)
- July 2020 (9)
- June 2020 (11)
- May 2020 (13)
- April 2020 (8)
- February 2020 (1)
- January 2020 (1)
- October 2019 (1)
- August 2019 (2)
- July 2019 (2)
- March 2019 (1)
- January 2019 (2)
- December 2018 (1)
- November 2018 (2)
- October 2018 (5)
- September 2018 (3)
- July 2018 (1)
- April 2018 (2)
- March 2018 (1)
- February 2018 (9)
- January 2018 (27)
- December 2017 (1)
- November 2017 (2)
- October 2017 (3)
Comments (8)