These 11 checks test what's verifiable from the public page about GDPR and ePrivacy compliance — consent mechanisms, disclosure requirements, and stated policies. A clean result here is necessary-but-not-sufficient evidence of compliance: it can't verify your internal processes, only what's visible on the site itself.
Grounded in GDPR (Regulation (EU) 2016/679) Art. 5(1)(e), 7, 13, 14, 28(3), 32, and the ePrivacy Directive.
Full citation mapping:
Standards & Methodology →
What's checked
- Consent — cookie consent platform detected, analytics gated behind consent
- Disclosure — privacy policy, cookie policy, data controller identification
- Rights — data-subject rights mentioned, retention statement present
- Contact — role-based contact email, form privacy notices
- Processing — data processing addendum referenced
Part of the Site Integrity Index
20 points. 11 checks. One published framework.
Privacy & Legal Compliance is one of five pillars on the Site Integrity Index. Every check on this page maps to a published standard.
Run your Site Integrity score →