Diagnostic tool

EU cyber deadline checker

Five questions to see which European rules — NIS2, DORA, the Cyber Resilience Act — reach your company, and from when.

~2 minutes · 5 questions Runs in your browser · nothing is sent

Who it’s for

Who it’s for

Companies, leadership and firms that need a quick read on which European obligations they are exposed to — before committing time or budget to a compliance path.

How it works

Answer five questions. The result is computed in your browser: no answers are sent or stored.

What it can indicate

  • Which of the main EU regulations are likely to reach you.
  • The reference dates to keep in mind.
  • Where it is reasonable to start.

What it cannot do

  • It is not a formal applicability determination: that depends on national transposition and the competent authorities.
  • It does not cover every applicable rule (e.g. data protection or sector-specific rules).
  • It is not legal advice.

The five questions

Answer for your situation today. If you are unsure, choose “Not sure”.

Your business

1Do you offer products or services, or operate, in the European Union?

2Which area does your business mainly fall under?

3Do you have at least 50 employees, or annual turnover/balance sheet above €10 million?

4Are you a regulated financial entity (bank, insurer, investment firm, payment or e-money institution, asset manager, crypto-asset service provider)?

5Do you make, import or distribute products with digital elements (connected hardware or software, or products with a digital component)?

Didn’t finish the check?

Speak to the advisor directly.

A confidential 30-minute briefing to understand which obligations you are exposed to and how to proceed.

Book a consultation

Sources: EU texts on EUR-Lex.