Skip to content
Live12+ production solutions40+ clients deployeddirect + partner
Glossary · Compliance & Data

What is WCAG 2.2 AA?

The W3C Web Content Accessibility Guidelines at AA conformance — the legally-cited accessibility standard for public-sector, healthcare, and most enterprise procurement in 2026.

Also known as

wcagweb content accessibility guidelineswcag 2.2wcag aawcag compliancea11y standard
Definition

WCAG 2.2 AA — explained.

WCAG (Web Content Accessibility Guidelines) is the W3C accessibility standard for web content, kiosks, mobile apps, and increasingly any digital surface that serves the public. The current cited version in 2026 is WCAG 2.2, with AA conformance as the procurement-default. The standard covers four principles — Perceivable, Operable, Understandable, Robust — through 50+ success criteria including text alternatives, captions, keyboard accessibility, sufficient contrast, focus visibility, target size, consistent navigation, and accessible authentication. WCAG 2.2 AA is referenced in UK public-sector procurement, EU Accessibility Act, US Section 508, Saudi PDPL accessibility provisions, and most healthcare and education procurement gates. Compliance is demonstrated through automated testing (axe-core, Lighthouse), manual evaluation against the success criteria, and a Voluntary Product Accessibility Template (VPAT) document. For interactive wayfinding kiosks, queue management kiosks, self-service kiosks, and clinic patient portals, WCAG 2.2 AA is non-negotiable: wheelchair-aware routing, large-text mode, screen-reader output, audio cues, height-adjustable kiosk hardware, and accessible authentication must all be present.

Why it matters

Why operators care about wcag 2.2 aa.

Public-sector and healthcare procurement in 2026 will not sign a contract without WCAG 2.2 AA. The standard is also the legal floor in many jurisdictions for any digital service interacting with the public. A platform that ships AA-compliant out of the box clears procurement; one that requires accessibility work in Phase 2 fails the bid review.

What to look for in a vendor

Buyer's checklist

  • WCAG 2.2 AA conformance demonstrated with axe-core or equivalent
  • VPAT (Voluntary Product Accessibility Template) document provided
  • Wheelchair-aware routing where applicable (wayfinding, kiosk)
  • Screen-reader output, large-text mode, audio cues
  • Accessible authentication patterns (WCAG 2.2 specifically tightens these)
  • Re-audit cadence (typically every 6 months) as part of the Care Plan
Solutions where wcag 2.2 aa applies

Zeour solutions that operate on this layer.

Wayfinding

wayfinding · system

Zeour GLARUS WFS — the enterprise indoor-navigation suite deployed in hospitals, airports, shopping centres, universities, government buildings, and corporate campuses. Touch-first wayfinding kiosks with on-screen keyboards in Multilingual (full RTL) as a production baseline; any other locale is added per engagement. QR handoff lets visitors continue navigation on their phone with a time-limited secure session. Smart multi-floor routing with picture-in-picture floor switching, a wall-aware shortest-path routing engine that guides visitors around walls and closures, multi-floor route resolution across elevators / stairs / escalators, and an admin map editor for placing POIs, kiosks and walls, drafting multi-floor paths, and snap-to-grid drawing. GDPR-aligned — telemetry never carries personal data.

See the solution

Self-Service Kiosks

digital · self · service · kiosk

Zeour builds bespoke self-service kiosks end-to-end — software and hardware engineered together for the exact service you need to digitize. Self-payment kiosks (utilities, fines, fees, tuition, taxes), self-ordering for restaurants and QSR, charity donation kiosks, airport taxi-booking kiosks, telecom SIM-dispenser kiosks, bank self-service (cash deposit / withdrawal / cheque), KYC kiosks with passport / national ID / face match / fingerprint, tender-participation kiosks for government procurement, utility payment kiosks, government self-service citizen portals, restaurant self-ordering + POS integration, and more. Every deployment is custom-fitted to your operation; every kiosk integrates with your existing systems; every transaction is auditable.

See the solution

MediCare Clinic

medicare · clinic · management · system

Zeour MediCare — the multilingual on-premise clinic and EMR management system for small-to-mid healthcare practices. Covers patients (records, allergies, conditions, medications, body diagrams), appointments + visits with SOAP notes, prescriptions with drug-interaction checks, lab orders + samples + results, billing + payments + invoicing, inventory, expenses, referrals, medical certificates, refill requests, patient communications, telemedicine (WebRTC), an AI clinical assistant (OpenAI-powered with 7 modes), a patient self-service portal, and a full role-based access model across Admin, Doctor, Reception, and Lab Tech roles. Engineered multilingual — (with full RTL) as the production baseline, extensible to any locale — and runs locally on a single server.

See the solution

Enterprise Dev

enterprise · development · services

Zeour Enterprise Development — we design, build, and operate corporate-grade software for organizations that take their software seriously. Custom web platforms, mobile apps, kiosk fleets, embedded/hardware-coupled systems, real-time services, AI-augmented workflows, system integrations (CRM / ERP / HRIS / payment gateways / BI / national health systems / lab analyzers / payment terminals / card readers / GPIO barriers), legacy modernization, cloud migration, on-premise deployments, DevOps + CI/CD, security hardening, and 24/7 support. Every other solution on this site — MediCare Clinic Management, Smart Parking, GLARUS Queue Management, Wayfinding, Digital Signage, Visitor Management, Online Appointment, Self-Service Kiosks, Customer Feedback — is something our team designed, built, and operates today. The same team is available for your bespoke engagement.

See the solution
Related terms

Adjacent definitions to read next.

GDPR

Compliance & Data

The EU's data-protection regulation — establishes consent, purpose-limitation, residency, breach-notification, and the data-subject rights regime.

PDPL

Compliance & Data

Personal Data Protection Law — the data-protection regime in Saudi Arabia (and equivalents in the UAE and several Gulf states).

ISO 27001

Compliance & Data

The international standard for Information Security Management Systems (ISMS) — a certifiable framework for managing information-security risk.

Sovereign Deployment

Sovereign Deployment

Software that runs entirely inside the operator's perimeter — their hardware, their network, their backups, their keys — with no third-party dependency for continued operation.

CCPA / CPRA

Compliance & Data

California's data-protection law — and the CPRA amendment in force since 2023 — establishing data-subject rights for California residents.

Cyber Essentials

Compliance & Data

The UK NCSC's baseline cybersecurity certification — a five-control posture (firewalls, secure config, access control, malware, patches) increasingly required for UK government contracts.

Data Subject Access Request (DSAR)

Compliance & Data

The data-subject's right to request a copy of all personal data an operator holds about them, plus deletion, correction and processing-restriction rights — under GDPR, PDPL and equivalent laws.

Explicit Consent

Compliance & Data

Consent that is specific, informed, unambiguous and given by a clear affirmative action — separate tickboxes per purpose, not bundled — required under GDPR, PDPL and equivalent laws.

Want to discuss wcag 2.2 aa for your operation?

Talk to a Zeour engineer.

A 30-minute scoping call to walk your operational profile against where wcag 2.2 aa actually sits in your stack, then a fixed-fee Discovery price by the end of the call.