---
title: "Fohrkast Compliance Guides Index"
description: "Plain-English guides to cookie consent, privacy, and website accessibility rules for EU businesses, starting with Ireland."
canonical: "https://fohrkast.com/guides"
group: "Guides"
updated: "2026-06-28"
---
# Plain guides to EU privacy and accessibility rules

Fohrkast publishes plain-English guides to cookie consent, privacy, and website accessibility requirements for EU businesses. Written without jargon and updated as rules change, with all sources cited.

## What you'll find here

This section covers three core compliance topics that apply to Irish websites and online businesses:

- **Cookie consent rules**: when and how to ask for consent before placing non-essential cookies
- **Website accessibility**: what the European Accessibility Act requires from online businesses
- **Privacy policy requirements**: what information privacy notices must contain under the GDPR

Each guide explains the relevant law, what it means in practice, and how to check where your site currently stands.

## Cookie consent rules for Irish websites

**Regulation:** ePrivacy Regulations (S.I. No. 336 of 2011) and GDPR

Irish law requires consent before non-essential cookies are set on a visitor's device. Consent must be given before the cookie loads, refusing must be as easy as accepting, and you must be able to demonstrate what the visitor chose.

**Key requirements:**

- Non-essential cookies (analytics, advertising, embedded media) cannot load until the visitor agrees
- Strictly necessary cookies, required for the website to function, are exempt
- Refusing must be clearly possible: no consent walls, no pre-ticked boxes, no accept-only buttons
- Consent must be recorded with a timestamp so you can prove it was given
- When your cookie policy materially changes, you must re-ask for consent

**How compliant consent works:** A well-configured setup blocks non-essential scripts by default, presents clear categories, records the decision, and lets the visitor change their mind later.

**Data Protection Commission standard:** The DPC expects refusing non-essential cookies to be as easy as accepting them, and consent to be specific, informed, and freely given.

## Website accessibility rules for Irish businesses

**Regulation:** European Accessibility Act (Directive (EU) 2019/882)  
**Effective date:** 28 June 2025

The European Accessibility Act applies to e-commerce sites and many online services. For websites, the practical standard is WCAG 2.1 at level AA. Meeting this standard means:

- Text alternatives for images and media
- Full keyboard access to all functionality
- Sufficient colour contrast (at least 4.5:1 for normal text)
- Content that works with assistive technology like screen readers

**Required: an accessibility statement**

An accessibility statement is a visible signal that you have considered accessibility. It tells users the standard you aim for, known limitations, and how to report a problem or request information in another format. An accessibility statement is a required element under related accessibility rules.

**Check where you stand:** An automated scan catches common issues such as missing alternative text, low contrast, and unlabelled controls. A free scan shows your current position without needing a full manual audit.

## Privacy policy requirements for Irish websites

**Regulation:** GDPR (Regulation (EU) 2016/679) and Data Protection Act 2018 (Ireland)

A privacy policy meets the GDPR's transparency duty. It must explain, in plain language, who you are, what data you collect, why you collect it, on what lawful basis, who you share it with, and what rights people have.

**Information the privacy notice must contain:**

- Your name, contact details, and how to reach you
- The purposes and lawful basis for processing personal data
- The categories of personal data you collect
- Who the data is shared with (recipients or processors)
- Any transfers outside the EEA and the safeguards in place (e.g., Standard Contractual Clauses)
- How long you keep the data
- Data subject rights: access, rectification, erasure, restriction, objection, portability, and the right to lodge a complaint with the Data Protection Commission

**Plain language requirement:** The information must be concise, transparent, intelligible, and in clear and plain language. A wall of legal text that no one understands does not meet the transparency requirement.

**Keep it current:** Your privacy notice must reflect the tools and processors you actually use. When you add analytics, a payment provider, or an embedded service, update both the privacy notice and your cookie disclosures.

**Supervisory authority:** The Data Protection Commission (dataprotection.ie) is the regulatory body for data protection in Ireland.

## Frequently asked questions

**Do I need consent for Google Analytics in Ireland?**

Yes. Analytics cookies are non-essential, so they require prior consent before they load. The visitor must actively agree before the cookie is set.

**Is an accept-only cookie banner allowed?**

No. The Data Protection Commission expects refusing non-essential cookies to be as easy as accepting them. A banner with only an accept button, or one that makes refusal difficult, does not meet the legal standard.

**When does the European Accessibility Act apply?**

Its requirements apply from 28 June 2025 for the products and services it covers, including e-commerce and online ticketing.

**What accessibility standard should my website meet?**

The common benchmark is WCAG 2.1 at level AA. This covers text alternatives, keyboard access, sufficient contrast, and compatibility with assistive technology.

**Is a privacy policy legally required in Ireland?**

If you collect personal data, the GDPR transparency duty applies. A privacy notice is the standard way to meet it and must be provided at the point of collection.

## How Fohrkast helps

Fohrkast offers two tools to check where your site stands:

- A free automated scan that identifies common cookie consent and accessibility gaps (missing alt text, low contrast, unlabelled controls)
- A cookie-consent widget (Shield) that blocks non-essential scripts by default and records visitor choices

An automated scan is not a legal certification or guarantee of conformance. It identifies issues where practical, but it shows your current position quickly and points to the gaps that matter most.

## About Fohrkast

Fohrkast is an AI-first compliance scanner and cookie-consent widget for EU businesses. It helps you understand privacy, cookie, and accessibility rules through plain-English guides, automated readiness checks, and policy generators. Fohrkast is not a legal adviser or overlay; it aims to make compliance easier to understand and act on where practical.

## Sources

All information in these guides is drawn from:

- **ePrivacy Regulations (Ireland):** S.I. No. 336 of 2011
- **GDPR:** Regulation (EU) 2016/679, Articles 12–14 (transparency)
- **GDPR Consent Standard:** Regulation (EU) 2016/679, Articles 4(11) and 7
- **Data Protection Act 2018 (Ireland):** irishstatutebook.ie/eli/2018/act/7
- **Data Protection Commission guidance:** dataprotection.ie (cookies and similar technologies)
- **European Accessibility Act:** Directive (EU) 2019/882
- **Web Accessibility Standard:** WCAG 2.1 level AA
- **EU Web Accessibility Directive:** Directive (EU) 2016/2102 (public sector bodies)

Last reviewed: 27 June 2026

---

Source: https://fohrkast.com/guides
This is automated readiness information, not legal advice or a guarantee of conformance. Last reviewed 2026-06-28.
