Skip to content
Our work

We deliver because we build our own

Before we build anything for you, we test it on our own products. Medova, Patron, and the training platform grew out of the same regulations your company faces: WCAG, GDPR, NIS2.

documented projects
7documented projects
live in production
2live in production
technologies in the stack
30technologies in the stack
compliance standards
2compliance standards

Our own products

We build them with our own money and maintain them for years. That is the most honest proof of how we work.

Web Applications

Medova

A travel medicine platform available in 15 languages. Vaccination requirements for 231 countries, over 600k health records from official WHO and CDC sources, GDPR and WCAG as standard.

Client: EPKO sp. z o.o.

Beta
Web Applications
Since 2026, ongoing

Emergency and safety training platform

Web and mobile app covering four emergency response disciplines, with a QR-verifiable certificate. Access is enforced by the database, not the interface, and 67 security tests prove it against a live project. Offline lessons encrypted with AES-256.

In Development

Delivered for clients

Some projects are under NDA, so we describe them without names. The rest come with the full story: challenge, solution, outcome.

What it looks like in numbers

1,778TypeScript files541 React components, strict mode
7,929Tests499 test files + mutation testing
935RLS policies160 tables, 6 roles, zero-trust
15LanguagesIncluding Arabic (RTL) and Japanese
Full story: Medova: Informed Care platform in 15 languages

Looking for something in your industry?

We described separately what working with us looks like in the three industries we know best.

Got a similar project? Let us talk.

The first call is free and non-binding. You can also start with a free check of your current site, so we have something concrete to discuss.

We reply within 24 hours.

FAQ

Questions about our work

Does your digital product comply with EU law?

EAA, WCAG, GDPR, NIS2. These regulations are already in force. Enter your URL and we'll check EU compliance. Free, results in 48h.

WCAG 2.1 AAGDPR / cookiesNIS2 / securityResults within 48h

Step 1 of 2

No phone calls. No newsletter. One email with your report.

What you actually get within 48 hours

A short, concrete document with the most important recommendations. No commitment, no sales pitch in disguise.

What you get

  • A short PDF report (2-3 pages) reviewing the technical aspects of WCAG, GDPR and NIS2
  • The top 3 technical risks worth addressing first
  • A list of quick wins you can implement on your own or with any vendor
  • An optional short online call if you want to discuss the results

Who does it

  • The scan is run by a member of the EPKO team, supported by automated tools (Lighthouse, axe-core, our own checklists)
  • You correspond directly with the person who signed the report, with no account managers in between
  • The report covers the technical layer and does not replace a formal legal or certification audit
  • If you decide to work with us on remediation, Eryk (CTO) or Patryk (CEO) joins the project

In what form

  • PDF sent by email, accessible to screen readers
  • A short summary of the results in the email body
  • Materials stay with you and can be shared with your legal or IT team
  • Turnaround: 48 hours from request confirmation, on business days

Common questions about the audit