A documented, automated audit across GDPR, NIS2, cookie consent, data retention, third-party processors, and the European Accessibility Act — delivered as a signed PDF within minutes.
discoverable.ie is an automated compliance audit service for Irish and EU businesses. Submit your website URL and receive a 44-check PDF report covering GDPR, NIS2, cookie consent and the European Accessibility Act — with a scored compliance grade and prioritised remediation steps — in under five minutes.
The audit runs automatically against your live website. No installation, no code access, no agent required.
Enter your website address and email. Pay €39 securely via Stripe. Your report is tied to one URL per payment.
Our engine fetches your homepage, privacy policy, cookie policy, and accessibility statement. Each of the 44 checks is run and scored against the relevant regulation.
A signed PDF report is emailed to you. It includes category scores, a risk level, individual check findings, and a prioritised remediation checklist.
Every check maps to a specific article, recital, or guidance document. The report cites the relevant legal basis for each finding.
Controller identity, lawful basis, data subject rights, retention policy, DPO details, international transfers and adequacy mechanisms.
GDPR Art. 13, 14, 37, 46 · DPC guidance
Banner presence, consent before cookies are set, reject / decline option, cookie categories, withdrawal mechanism, and consent management platform detection.
ePrivacy Dir. Art. 5(3) · CJEU Planet49 · DPC
SAR contact method, 30-day response commitment, right to erasure (Art. 17), and right to data portability (Art. 20).
GDPR Art. 15, 17, 20
Breach notification process, 72-hour DPC reporting obligation, security contact email, and reference to the Irish Data Protection Commission.
GDPR Art. 33, 34
Security policy page, vulnerability disclosure (security.txt), HTTPS enforcement, security response headers, and security contact availability.
NIS2 Dir. 2022/2555 Art. 21
Retention schedule disclosure, specific retention periods, data deletion or anonymisation process, and statutory hold provisions.
GDPR Art. 5(1)(e), 13(2)(a)
Sub-processor list, transfer mechanisms (SCCs / adequacy), analytics and tracking tool disclosure, and data processing agreement references.
GDPR Art. 28, 46 · Schrems II
HTTPS enforcement, HSTS header, X-Frame-Options, Content-Security-Policy, and Referrer-Policy. Based on HTTP response headers.
NIS2 Art. 21 · OWASP
Accessibility statement, HTML lang attribute, image alt text coverage, and keyboard navigation / ARIA landmark indicators.
EAA Dir. 2019/882 · WCAG 2.1 AA · In force June 2025
Irish and EU regulators are actively enforcing. A documented baseline is the first step in any compliance programme.
The Data Protection Commission issued 24 binding decisions in 2023–24, with fines reaching €1.2 billion across EU supervisory authorities. SMEs are not exempt from enforcement.
The European Accessibility Act applies to digital products and services from 28 June 2025. Websites failing basic accessibility requirements risk complaints and enforcement by the National Disability Authority.
NIS2 significantly expands the scope of cyber-security obligations to include medium-sized enterprises across more sectors. Non-compliance can result in fines of up to €10 million or 2% of turnover.
No subscription. No account required. Pay per report. Suitable for one-off due diligence, client audits, or annual compliance reviews.
Single URL · 44 checks · PDF delivery
Need to audit multiple sites? Contact us for volume pricing.
Verify a client or employer website against GDPR requirements. Use the report as a documented baseline before a formal audit.
Identify surface-level compliance gaps quickly. Use findings to brief management or prioritise remediation workstreams.
Supplement technical assessments with regulatory compliance findings. Covers NIS2 and security header requirements.
Check your own firm's digital presence before a DPC inspection or client inquiry. Demonstrates due diligence.
Understand your compliance exposure without engaging a consultant for an initial assessment. Act on the remediation checklist directly.
Use the technical and NIS2 checks as part of external evidence gathering for ISMS scope and control verification.
44 checks. PDF delivery. €39 + VAT. No subscription required.
Run an Audit →