Check if a website has key GDPR compliance signals — privacy policy, cookie consent, HTTPS, contact details, and data transparency language. Free surface-level audit.
The General Data Protection Regulation (GDPR) is an EU law that governs how organisations collect, store and process personal data of EU/EEA residents. It applies worldwide to any site with EU visitors.
8 surface-level signals: HTTPS, privacy policy, cookie consent, contact info, terms of service, GDPR language, analytics trackers, and social media embeds.
This tool performs automated HTML analysis only. True GDPR compliance involves data processing agreements, privacy impact assessments, and internal policies that cannot be detected automatically.
Non-compliance can result in fines up to €20 million or 4% of global annual revenue (whichever is higher). Even small businesses must comply if they process EU personal data.
Under GDPR and ePrivacy Directive, non-essential cookies (analytics, advertising) require explicit consent before being set. Implied consent via a "by continuing" banner is not compliant.
GDPR grants rights including: right to access, right to deletion, right to portability, right to rectification, and right to object to processing. Your privacy policy must explain these.