Privacy & Compliance
GDPR, Schrems II, AI Act §50, EAA, cookie consent, imprint, and tracking-without-consent.
21 issuesbelow — sorted by severity, with the critical and high-severity ones first because they're what you should fix this week. Each entry links to a single page with the symptom, the root cause, the actual code or config change to ship, and a free scan that checks if the issue applies to your site right now.
Google Fonts are loaded from US-based CDNs without user consent, risking GDPR violations and legal claims.
Google reCAPTCHA loads before user consent, risking unlawful EU-US data transfer under Schrems II.
Meta Pixel loads before user consent, violating GDPR and ePrivacy rules on 500 pages.
No legally-required Impressum (imprint) page detected for German DDG §5 compliance.
Analytics scripts are loaded without user consent, violating privacy regulations like GDPR and CCPA.
No accessibility statement page was found on your website. This is a compliance issue under the European Accessibility Act (EAA) from June 2025 for most EU-faci
No Privacy Policy page was found on your website, which is a legal and trust requirement.
Your commerce site lacks a clearly published return or withdrawal policy, violating EU consumer protection laws and potentially harming user trust and SEO perfo
No Terms of Service page was found or linked anywhere on your website.
The privacy policy fails to mention active tracking services, such as googletagmanager.com, which is a violation of GDPR transparency requirements. This omissio
Privacy policy omits required disclosure of EU→US data transfers and transfer mechanisms (SCCs/DPF) for US-hosted services.
The privacy policy on your website does not meet GDPR or other privacy law requirements. It is missing key information such as user rights, details about tracki
Tracking scripts found but no privacy policy link detected; this is a major compliance issue.
No 'Do Not Sell My Personal Information' link found; required by CCPA for sites sharing personal data with third parties.
No contact email address is visible on the site, violating GDPR and regulatory requirements.
A dedicated cookie policy page is missing from your website. This is a compliance issue under GDPR and the ePrivacy Directive, which require clear disclosure of
Site lacks required disclosure that AI-assisted content may be used, per EU AI Act Article 50.
No imprint or legal notice page was detected on your website. This page is legally required for EU-based businesses and German-language sites, especially those
A 'No Refund Policy Found' issue means your website, despite engaging in e-commerce, lacks a clearly accessible refund or return policy page. This is a complian
No Terms of Service page was found on your website, which may affect trust and legal clarity for users and search engines.
The privacy policy on your website lacks clear statements about the legal basis for processing personal data and does not inform users of their right to restric
See which privacy & compliance issues affect your site
Free scan · No credit card required.