NIS2 · GDPR · CRA in one platform

Continuous NIS2 and GDPR compliance, without the consultant fee

Gap analysis against NIS2 Article 21 and GDPR, security awareness training for your staff, periodic check-ins, and supplier follow-up – in one platform.

Not sure if you're in scope? Take our 1-minute self-test →

NIS2 and GDPR are included in the base price. Do you manufacture or sell products with digital elements? Our CRA (Cyber Resilience Act) module is available as an add-on.

From 990 SEK/month, no lock-in. See all pricing

Why it can't wait

NIS2 and GDPR aren't optional recommendations - they're law, with real consequences for the company and for those of you in management.

Personal liability for management

Under NIS2, the board must approve risk-management measures and undergo training - and can be held personally liable for gross negligence.

Significant fines

Non-compliance with either NIS2 or GDPR can lead to very expensive fines - the penalties scale with company turnover, not a small fixed amount.

Tight incident deadlines

NIS2 requires an early warning within 24 hours and a formal notification within 72 hours. GDPR requires notifying the supervisory authority within 72 hours. Without a routine, you won't make it.

Everything you need to show you're on top of it

Built around the actual requirements in the regulations, not generic checklists.

Gap analysis against NIS2 Article 21

All ten requirement areas - risk analysis, incident handling, supply chain, encryption and more - with a clear red/yellow/green status per area.

GDPR compliance in the same view

Lawful basis, data subject rights, processor agreements and incident handling are assessed in the same engine as NIS2, without becoming a separate product.

Combined reports on demand

Download a PDF report showing the full picture across NIS2 and GDPR in one document - ready for a board meeting or an audit.

Security awareness training

Build a question bank, send out quizzes on a recurring schedule, and see response rates and results per round.

Supplier follow-up

Invite your suppliers to answer a simplified form via a one-time link, with no account required on their end.

Incident handling with the right contacts

Quick contacts to the right authority and clear deadlines built right into the platform, so you act in time when something happens.

As your business grows, the platform grows with it

CRA (Cyber Resilience Act)

An add-on for manufacturers and sellers of products with digital elements. Assess each product separately against the EU's product security requirements.

ISO 27001 / 27002 guidance

Recommendations and control mapping against the gap analysis categories, for those who want to structure the work around the ISO standard.

How it works

From registration to a report you can show off - no consultant, no spreadsheets.

1

Register your company

Create an account in a few minutes, no installation or IT integration required.

2

Answer the gap analysis

Mark where you stand per requirement: met, partial, or missing - with the option to attach evidence.

3

Remediate and train

Assign tasks to the right person and send out security awareness training on a recurring schedule.

4

Report

Download a combined report whenever you need to show off your status - internally or for an auditor.

See the platform in action

A short walkthrough of the flow from login to report.

See the platform in action
  1. 1. Log in and get a combined overview with status per regulation.
  2. 2. Go into the gap analysis and answer requirements by category.
  3. 3. Download a combined report, ready to show off.

Ready to get started?

Register your company today, or become a reseller and help your customers get ready for NIS2 and GDPR.