Sample report

Illustrative example — no real company data

Sample report: readiness for a German SME

This sample shows the structure of a KonformPass readiness report. All values are fictional and for illustration only.

Sample company

Example GmbH · 42 employees · B2B/B2C · Germany

Management summary

The sample company is in scope for e-invoicing receipt and for BFSG. AI Act exposure depends on the AI tools in use (currently medium risk). NIS2-Light baseline controls exist, but documented evidence is missing.

Module scores

E-Invoicing
62/100
In scope
BFSG Accessibility
41/100
In scope
EU AI Act
78/100
Possibly in scope
NIS2-Light
55/100
In scope

Top risks

  • No documented receipt channel for structured e-invoices (XRechnung / ZUGFeRD 2.x).
  • Website / shop without accessibility statement and without documented WCAG baseline check.
  • No internal AI usage policy per EU AI Act, Art. 4.
  • Backup restore has not been tested in the last 12 months.

Next steps (top 3)

  1. 1Set up an e-invoice inbox and assign an internal owner.
  2. 2Publish an accessibility statement and document a WCAG 2.1 AA baseline check.
  3. 3Roll out an AI usage policy and short AI-literacy training.

Deadline calendar

  • E-Invoicing2025-01-01
  • BFSG Accessibility2025-06-28
  • EU AI Act2026-08-02

Evidence checklist

  • Screenshot / configuration of the e-invoice inbox
  • URL of the published accessibility statement
  • AI tool inventory (table with purpose & risk class)
  • Latest backup restore test report
  • MFA activation for admin accounts (screenshot)

Rules referenced

Rule set: EUReady Rules v1.0. Per-rule details:

Legal notice

KonformPass provides readiness and implementation support. The platform does not replace legal advice, tax advice, cybersecurity consulting, accessibility auditing or official certification. Users remain responsible for verifying critical results with qualified advisors.

Start the free readiness check

Share this sample with colleagues as an example.