Score a cybersecurity incident against NIS2 Article 23 significance thresholds. Determines whether the incident meets reporting criteria, calculates the 24-hour early warning, 72-hour notification, and 30-day final report deadlines, and identifies the required notification recipients.
🔒 All inputs are processed locally in your browser. No data is transmitted. Do not enter real personal data — use synthetic or anonymised inputs only.
⏱ NIS2 Article 23 reporting clocks start from when the entity becomes aware of the significant incident. 24 hours — early warning to national CSIRT. 72 hours — full notification with impact assessment. 30 days — final incident report.
Scope
Root node of the nis2-incident-response chain (art-144→145). Assesses whether an incident crosses the NIS2 Article 23 significance threshold using six triggering factors: service disruption ≥1h, affected users ≥1,000, financial loss ≥€100K, third-party cascade impact, malicious act, or cross-border impact. Three or more triggers — or combined cascade+malicious — escalates to critical.
Copy this paragraph into Claude, OpenClaw, or any MCP-aware agent to run this exact tool, with this sample, and verify the artifact.
Run the AINumbers MCP tool `score_nis2_incident_significance`. Task: Score a cybersecurity incident against NIS2 Article 23 significance thresholds.
Call it with arguments: {"policy_parameters":{"service_disruption_hours":4,"estimated_affected_users":5000,"estimated_financial_loss_eur":500000,"third_party_cascade_impact":false,"involves_malicious_act":false,"cross_border_impact":false,"entity_classification":"essential"}}
Verify before trusting: call `verify_execution_hash` on mcp.ainumbers.co (https://mcp.ainumbers.co/mcp) with the parameter `claimed_hash` set to the returned `execution_hash`, passing the full artifact the run returned (the object containing `policy_parameters` + `output_payload` + `execution_hash`; equivalently `policy_parameters` + `output_payload` with `claimed_hash`), not the bare hash string, or re-run the in-page WebMCP tool `score_nis2_incident_significance`.
Return the ledger link https://ledger.ainumbers.co/ so a human can re-verify without contacting us.
PII rule: All inputs are processed locally in your browser. No data is transmitted. Do not enter real personal data — use synthetic or anonymised inputs only.
Open the tool with the sample prefilled: https://ainumbers.co/chaingraph/art-144-nis2-incident-significance-scorer.html#p=v1.H4sIAAAAAAAA_wHmABn_eyJzZXJ2aWNlX2Rpc3J1cHRpb25faG91cnMiOjQsImVzdGltYXRlZF9hZmZlY3RlZF91c2VycyI6NTAwMCwiZXN0aW1hdGVkX2ZpbmFuY2lhbF9sb3NzX2V1ciI6NTAwMDAwLCJ0aGlyZF9wYXJ0eV9jYXNjYWRlX2ltcGFjdCI6ZmFsc2UsImludm9sdmVzX21hbGljaW91c19hY3QiOmZhbHNlLCJjcm9zc19ib3JkZXJfaW1wYWN0IjpmYWxzZSwiZW50aXR5X2NsYXNzaWZpY2F0aW9uIjoiZXNzZW50aWFsIn0CJPFC5gAAAA