Q i W i S
Independent Human-Reviewed Web Compliance Audits

Uncover the legal & privacy risk hiding on your website.

QiWiS measures what automated scans miss — WCAG accessibility barriers, unauthorized tracking, and pre-consent cookies. We give SMB decision-makers a clear, quantified Web Integrity Score and an actionable remediation roadmap.

No Automated Scams
Fixed-Fee Pricing
WCAG 2.2 / GDPR
QiWiS Scanner v3.4
Live Inspection
Target Site sample-ecommerce-client.com
Web Integrity 52 / 100
Detected Vulnerabilities (Human Verified)
HIGH
Meta Pixel Firing Before Consent GDPR Art. 7 · Network Request #14
MED
Checkout Form Labeling Error WCAG 2.2 SC 3.3.2 · Screen Reader Block
MED
Contrast Failure on Secondary Buttons WCAG SC 1.4.3 (Ratio 2.8:1)
Audit Methodology: Manual + Engine 82 DOM Checks Passed
4,241
U.S. Federal Web Lawsuits in 2024 (Seyfarth Shaw)
96.3%
Of Top Million Homepages Have WCAG Failures (WebAIM)
73%
Of Unaudited SMB Sites Fire Trackers Pre-Consent
100%
Independent — No Overlay or CMP Commission
Core Disciplines

Three pillars of quantitative digital assurance.

We bridge the gap between abstract legal mandates (ADA, WCAG, GDPR, CCPA, EAA) and real-world web engineering.

Accessibility Integrity

Is your website exposing you to accessibility compliance and litigation risk?

We audit your site against WCAG 2.2 AA (the baseline for ADA Title III and European Accessibility Act EAA). Tested with NVDA, VoiceOver, and manual keyboard navigation.

  • Keyboard trap & focus indicators
  • Screen reader DOM tree inspection
  • Color contrast & reflow verification
Request Accessibility Audit →

Consent Integrity

Are cookies and tracking technologies deployed with appropriate consent?

We intercept network traffic in clean browser sessions to verify whether marketing tags, pixels, and cookie scripts respect your CMP configuration before interaction.

  • Pre-consent network payload analysis
  • Cookie & local storage inventory
  • CMP configuration & dark pattern audit
Request Consent Audit →

Web Integrity Score

A quantified view of your website's compliance posture.

A single, defensible 0–100 score weighted by actual legal threat vectors rather than raw issue counts. Designed for board reporting, insurers, and counsel.

  • Single-metric board summary
  • Remediation priority taxonomy
  • Re-verification badge upon fix completion
Get Your Site Scored →
Self Assessment

Estimate your exposure in 60 seconds.

Select your organization's digital parameters to calculate a preliminary risk rating and recommended audit scope.

Note: This self-assessment uses statistical averages from 100+ SMB site reviews. It does not replace a technical DOM and network traffic audit.
Estimated Posture Score
48 / 100
HIGH LITIGATION EXPOSURE
Recommended: Full Accessibility & Pre-Consent Audit
Inspection Data

What our human analysts routinely uncover.

Select a domain category below to inspect real-world findings from recent SMB website evaluations.

Severity Issue Description Legal / WCAG Benchmark Impact
CRITICAL Main dropdown navigation impossible to trigger using Keyboard (Tab / Enter) WCAG 2.1.1 (Level A) Blind and motor-impaired visitors completely blocked from subpages
HIGH Modal overlays trap screen reader focus with no close key (ESC) handler WCAG 2.1.2 (Level A) High lawsuit correlation vector in recent U.S. filings
MED Low contrast body text (2.9:1) on primary product description copy WCAG 1.4.3 (Level AA) Visually impaired users cannot comfortably read content
Package Output

What your team receives.

No auto-generated 400-page boilerplate PDFs. You receive executive clarity and developer-ready task tickets.

01. Executive Brief

1-Page Leadership Summary

Designed specifically for C-suite, DPOs, and external legal counsel. Outlines overall score, top lawsuit risk drivers, and timeline for fix validation.

✓ Web Integrity Score: 52/100
✓ 3 Critical Vectors Identified
✓ Liability Exposure Assessment
02. Engineering Backlog

Developer Ticket Matrix

Exportable CSV / Jira-ready items. Each entry includes exact DOM selectors, code snippet fixes, reproduction steps, and WCAG criteria.

✓ Exact DOM Line & Selector
✓ Before / After Code Examples
✓ Estimated Remediation Hours
03. Network Telemetry

Tracker & CMP Audit Log

Complete browser session log showing all cookies, third-party requests, and consent states — ready for regulatory defense.

✓ Pre-Consent Network Log
✓ Script Origin Classification
✓ CMP Signal Verification
Methodology

10 business days from scope to delivery.

A predictable, fixed-fee structure with no surprise billing or recurring platform lock-in.

01

Scope & Intake

We identify key templates, transactional flows, and your target jurisdictions during a brief kickoff.

02

Engine Crawl

Our scanning engine inventories DOM structures, network traffic, cookies, and tracking scripts across site paths.

03

Human Validation

An accessibility specialist tests with assistive tech (screen readers, keyboard) and eliminates false positives.

04

Briefing & Handoff

We deliver your score and ticket matrix, then host a 30-minute technical walkthrough with your team.

Fixed-Fee Guarantee Transparent SMB Pricing

Standard Site Audit: $1,800 – $4,500

Covers typical e-commerce, SaaS, or corporate sites up to 500 template instances. One-off project fee. NDA included.

Get Custom Scope Quote
Frequently Asked Questions

Clear answers for decision-makers.

Why can't we just rely on free browser extensions or automated tools?

Automated tools (like WAVE or Lighthouse) miss approximately 70% of WCAG criteria — including screen reader traps, context-dependent link labels, and dynamic form state bugs. Furthermore, automated tools cannot test pre-consent cookie network behavior. Plaintiff attorneys and regulators test with screen readers and proxy proxies, not just basic scanners.

Are automated accessibility "overlay widgets" effective protection?

No. Overlays do not alter underlying code errors, and over 700 lawsuits in recent years specifically targeted websites that had overlay widgets installed. Disability advocacy groups and digital rights organizations strongly caution against overlay solutions as legal shields.

We already have a cookie banner installed. Doesn't that handle consent?

Installing a banner software (CMP) does not automatically prevent scripts from firing if the tags are misconfigured inside your Google Tag Manager or CMS headers. In our testing, over 70% of sites with banners still transmit ad network pixels before the user clicks "Accept".

Can we execute a Mutual Non-Disclosure Agreement (NDA) before sharing our site details?

Yes. Mutual NDAs are standard for all our enterprise and SMB clients. We treat all telemetry and compliance findings as strictly confidential.

Initiate Evaluation

Get a free preliminary risk estimate.

Submit your domain details below. Our analyst team will run an initial high-level telemetry scan and respond within one business day.

DIRECT EMAIL hello@qiwis.com
🔒
CONFIDENTIALITY Mutual NDA Available Upon Request
"QiWiS gave our legal and dev teams the exact roadmap we needed to fix our accessibility gaps before launching our U.S. store." — E-Commerce Operations Lead