Regulatory references

The laws and standards Skanno checks — with official links

European Accessibility Act

From 28 June 2025 accessibility is mandatory for private companies too

The European Accessibility Act (Directive EU 2019/882, implemented in Italy by D.lgs 82/2022) extends accessibility obligations beyond the Public Administration. From 28 June 2025 they also apply to many private businesses: e-commerce, banking, transport, e-books, telecoms and consumer digital services.

Non-compliance can lead to sanctions and exclusion from the market. A WCAG 2.1 AA audit is the first concrete step.

♿ Accessibility — Italian and European framework

Italian law Legge 4/2004 (Legge Stanca)

Italian framework law on the accessibility of IT tools.

Relevant to Skanno: All accessibility tests (WCAG).

↗ Official text
Italian decree D.lgs 82/2005 (CAD)

Italian Digital Administration Code.

Relevant to Skanno: Requirements for public administration.

↗ Official text
Italian law Legge 18/2009

Ratification of the UN Convention on the Rights of Persons with Disabilities.

↗ Official text
EU Directive Direttiva UE 2016/2102

Accessibility of public-sector websites and mobile apps.

↗ Official text
Italian decree D.lgs 106/2018

Italian implementation of EU Directive 2016/2102.

Relevant to Skanno: Accessibility statement, AgID monitoring.

↗ Official text
EU Directive Direttiva UE 2019/882 — European Accessibility Act (EAA)

Accessibility of products and services (e-commerce, banking, transport, etc.).

Relevant to Skanno: Extends obligations to the private sector (see box above).

↗ Official text
Italian decree D.lgs 82/2022

Italian implementation of the European Accessibility Act.

Relevant to Skanno: Obligations applicable from 28 June 2025.

↗ Official text
Standard WCAG 2.1 / 2.2 (W3C)

Web Content Accessibility Guidelines — technical standard referenced by EU law.

Relevant to Skanno: Contrast 4.5:1, alt text, visible focus, 24px target size, etc.

↗ Official text

🇪🇺 European regulations — privacy, AI and digital

EU Regulation EU AI Act — Reg. (UE) 2024/1689

First comprehensive regulation on artificial intelligence in the EU market.

Relevant to Skanno: AI transparency (Art. 50), prohibited practices (Art. 5), dark patterns. Fully applicable from 2 August 2026.

↗ Official text
EU Regulation GDPR — Reg. (UE) 2016/679

Protection of the personal data of EU citizens.

Relevant to Skanno: Cookie banner, privacy policy, granular consent, user rights.

↗ Official text
EU Directive ePrivacy — Direttiva 2002/58/CE

Confidentiality of electronic communications, cookies and tracking.

Relevant to Skanno: Prior cookie consent, reject equivalent to accept, no cookie wall.

↗ Official text
EU Regulation DMA — Reg. (UE) 2022/1925

Digital Markets Act — obligations for digital gatekeepers.

Relevant to Skanno: Transparency on ad targeting.

↗ Official text
EU Regulation DSA — Reg. (UE) 2022/2065

Digital Services Act — online platforms, hosting, marketplaces.

Relevant to Skanno: Ad transparency, notice & action, ban on dark patterns.

↗ Official text
EU Directive NIS2 — Direttiva (UE) 2022/2555

Security of networks and information systems for essential and important entities.

Relevant to Skanno: Security, incident management, supply-chain risk.

↗ Official text
EU Regulation Cybersecurity Act — Reg. (UE) 2019/881

European cybersecurity certification framework (ENISA role).

Relevant to Skanno: Security standards.

↗ Official text

🌍 International regulations

Non-EU CCPA / CPRA (California)

Consumer privacy in California.

Relevant to Skanno: "Do Not Sell My Personal Information" link, opt-out.

↗ Official text
Non-EU LGPD (Brasile)

Brazil's General Data Protection Law.

Relevant to Skanno: Dedicated banners and notices.

↗ Official text
Non-EU US State Privacy Laws (VA, CO, CT…)

Privacy laws of individual US states.

Relevant to Skanno: Opt-out and transparency, similar to CCPA.

↗ Official text
Non-EU PIPL (Cina)

Personal Information Protection Law.

Relevant to Skanno: Separate consent for cross-border data transfer.

↗ Official text

⚙️ Technical standards and frameworks

Framework IAB TCF 2.2

Transparency & Consent Framework for programmatic advertising.

Relevant to Skanno: euconsent-v2 cookie, consent strings.

↗ Official text
Framework C2PA / Content Credentials

Standard for tracing the origin and edits of media content.

Relevant to Skanno: AI-provenance watermark/metadata.

↗ Official text
Framework Google Consent Mode v2

Integration between CMP and Google products. Mandatory for EEA traffic.

Relevant to Skanno: Consent-mode test, API calls.

↗ Official text
Framework Google AdSense Policies

Requirements for AdSense monetisation.

Relevant to Skanno: Privacy/About/Contact, ads.txt, mobile UX.

↗ Official text
Standard Chrome Manifest V3

Chrome extension architecture.

Relevant to Skanno: Relevant to the Skanno extension.

↗ Official text
Standard llms.txt

File (like robots.txt) with structured information for LLMs.

Relevant to Skanno: Test llms_txt.

↗ Official text
Standard robots.txt per AI bot

Managing AI crawlers (GPTBot, ClaudeBot, Google-Extended, CCBot…).

Relevant to Skanno: Test ai_bots_robots.

↗ Official text

📧 DNS and email standards

RFC / Technical SPF — Sender Policy Framework

Authorisation of email-sending servers.

Relevant to Skanno: Test dns_spf_record.

↗ Official text
RFC / Technical DKIM — DomainKeys Identified Mail

Cryptographic signing of emails.

Relevant to Skanno: Test dns_dkim_record.

↗ Official text
RFC / Technical DMARC

Authentication and anti-spoofing policy.

Relevant to Skanno: Test dns_dmarc_record.

↗ Official text
RFC / Technical DNSSEC

DNS security extensions.

Relevant to Skanno: Test dns_dnssec_enabled.

↗ Official text

🌱 Sustainability

Standard The Green Web Foundation

Verifies hosting powered by renewable energy.

Relevant to Skanno: Test sustainability_green_hosting.

↗ Official text
Standard Website Carbon

Estimates a page's CO2 footprint.

Relevant to Skanno: Test sustainability_page_weight.

↗ Official text

🛡️ Web security

Standard OWASP Top 10

Main security risks of web applications.

Relevant to Skanno: Many security tests.

↗ Official text
Standard Mozilla Observatory

Analysis of HTTP security headers.

Relevant to Skanno: Test security_headers.

↗ Official text
Standard Google Safe Browsing

Detection of dangerous sites (phishing, malware).

Relevant to Skanno: Test sec_safe_browsing.

↗ Official text
Standard WPScan Vulnerability Database

CVEs for WordPress core and plugins.

Relevant to Skanno: Test wp_vulnerable_plugins.

↗ Official text

📅 Regulatory deadlines to watch

DateEventImpact
28 June 2025European Accessibility Act (EAA) fully applicableAccessibility tests become mandatory for many private sites
2 August 2026EU AI Act — main provisionsAI Act tests become a compliance reference
2 August 2027Full obligations for high-risk AI systemsFRIA, audit trail, human oversight, AI-content watermark

Is your site compliant?

Find out in seconds how your site stands against these obligations.

Scan your site

Important note. Skanno provides automated technical indicators, not legal advice. Final compliance must always be validated by a DPO or a specialised lawyer. Regulations change: always check the official portals.