Free GDPR Compliance Tool
Privacy Policy Checker
Find out if your website has a Privacy Policy and which third-party tools are running on your site that must be disclosed. Instant results — for free.
Free · No account required · Results in under 30 seconds
A Privacy Policy is not just a legal formality — it's a transparency obligation under GDPR Article 13. Every website that collects personal data must inform users about who processes their data, why, how long it's stored, and what rights they have. Our scanner checks your site for a Privacy Policy and analyses whether it covers the disclosures regulators look for.
What the scanner checks for your Privacy Policy
Privacy Policy found
We scan your website for a Privacy Policy page — checking common URLs, footer links, and known page titles across multiple languages.
Privacy Policy URL identified
We find and report the specific URL of your Privacy Policy — confirming it exists and is reachable from your website.
Analytics tools detected
We identify third-party analytics tools (Google Analytics, Meta Pixel, HubSpot, etc.) running on your site — each must be disclosed as a data processor in your Privacy Policy.
Tracking pixels and embeds
We detect advertising pixels, social media embeds, and third-party iframes that collect personal data and require explicit disclosure.
Personal data collection detected
We check for contact forms, login fields, and other input mechanisms that directly collect personal data — each triggers the GDPR Article 13 disclosure obligation.
Missing Policy flagged as violation
If we detect personal data processing but find no Privacy Policy, we report this as a GDPR Article 13 violation and assign a risk score.
Cookie consent check
We verify whether a cookie consent mechanism exists on your site — required alongside your Privacy Policy when you use analytics or marketing cookies.
What must a GDPR Privacy Policy include?
Under GDPR Article 13, any organisation that collects personal data directly from individuals must provide specific information at the time of collection. This applies to any website that uses contact forms, analytics tools, cookies, or any other means of data collection.
- •Identity and contact details of the data controller
- •Contact details of the Data Protection Officer (if applicable)
- •The purposes and legal basis for processing each type of data
- •Data retention periods or the criteria used to determine them
- •Recipients or categories of recipients (including third-party processors)
- •Whether data is transferred outside the EU and the safeguards in place
- •All data subject rights: access, erasure, restriction, portability, objection
- •Right to withdraw consent (if consent is the legal basis)
- •Right to lodge a complaint with a supervisory authority
What is GDPR Article 13?
Article 13 of the GDPR sets out the information that must be provided to individuals when personal data is collected directly from them. It is the core transparency obligation of the regulation — and the most commonly violated requirement for websites.
- •Art. 13 applies when data is collected directly (e.g. contact forms, analytics, cookies)
- •Art. 14 applies when data is obtained from other sources (e.g. data purchased from third parties)
- •The information must be provided at the time of collection — not buried or hard to find
- •Failing to comply with Art. 13 is itself a GDPR violation, independent of how data is used
How often should you update your Privacy Policy?
Your Privacy Policy must accurately reflect your current data processing activities. Any time you add a new tool, change a data processor, or modify how you use data, your Privacy Policy should be updated.
- •When you add a new analytics tool, plugin, or SaaS integration
- •When a data processor changes their terms or data handling practices
- •When you start processing a new category of personal data
- •After a significant change in applicable law (e.g. new EDPB guidance, Schrems II ruling)
- •At minimum, review your Privacy Policy once per year
Frequently asked questions
Related compliance tools
Cookie Banner Checker
Check if your cookie banner is GDPR compliant and appears before tracking begins.
Google Analytics GDPR Checker
Check if Google Analytics is loading before consent and Consent Mode v2 is configured.
GDPR Scanner
Full GDPR compliance scan covering cookies, trackers, consent, and more.
AI Act Compliance Check
Assess your organisation's compliance with the EU AI Act.
Ready to check your website?
Enter your URL below and get a free GDPR compliance scan in seconds.