Free GDPR Compliance Tool

Privacy Policy Checker

Find out if your website has a Privacy Policy and which third-party tools are running on your site that must be disclosed. Instant results — for free.

Free · No account required · Results in under 30 seconds

A Privacy Policy is not just a legal formality — it's a transparency obligation under GDPR Article 13. Every website that collects personal data must inform users about who processes their data, why, how long it's stored, and what rights they have. Our scanner checks your site for a Privacy Policy and analyses whether it covers the disclosures regulators look for.

What the scanner checks for your Privacy Policy

Privacy Policy found

We scan your website for a Privacy Policy page — checking common URLs, footer links, and known page titles across multiple languages.

Privacy Policy URL identified

We find and report the specific URL of your Privacy Policy — confirming it exists and is reachable from your website.

Analytics tools detected

We identify third-party analytics tools (Google Analytics, Meta Pixel, HubSpot, etc.) running on your site — each must be disclosed as a data processor in your Privacy Policy.

Tracking pixels and embeds

We detect advertising pixels, social media embeds, and third-party iframes that collect personal data and require explicit disclosure.

Personal data collection detected

We check for contact forms, login fields, and other input mechanisms that directly collect personal data — each triggers the GDPR Article 13 disclosure obligation.

Missing Policy flagged as violation

If we detect personal data processing but find no Privacy Policy, we report this as a GDPR Article 13 violation and assign a risk score.

Cookie consent check

We verify whether a cookie consent mechanism exists on your site — required alongside your Privacy Policy when you use analytics or marketing cookies.

What must a GDPR Privacy Policy include?

Under GDPR Article 13, any organisation that collects personal data directly from individuals must provide specific information at the time of collection. This applies to any website that uses contact forms, analytics tools, cookies, or any other means of data collection.

  • Identity and contact details of the data controller
  • Contact details of the Data Protection Officer (if applicable)
  • The purposes and legal basis for processing each type of data
  • Data retention periods or the criteria used to determine them
  • Recipients or categories of recipients (including third-party processors)
  • Whether data is transferred outside the EU and the safeguards in place
  • All data subject rights: access, erasure, restriction, portability, objection
  • Right to withdraw consent (if consent is the legal basis)
  • Right to lodge a complaint with a supervisory authority

What is GDPR Article 13?

Article 13 of the GDPR sets out the information that must be provided to individuals when personal data is collected directly from them. It is the core transparency obligation of the regulation — and the most commonly violated requirement for websites.

  • Art. 13 applies when data is collected directly (e.g. contact forms, analytics, cookies)
  • Art. 14 applies when data is obtained from other sources (e.g. data purchased from third parties)
  • The information must be provided at the time of collection — not buried or hard to find
  • Failing to comply with Art. 13 is itself a GDPR violation, independent of how data is used

How often should you update your Privacy Policy?

Your Privacy Policy must accurately reflect your current data processing activities. Any time you add a new tool, change a data processor, or modify how you use data, your Privacy Policy should be updated.

  • When you add a new analytics tool, plugin, or SaaS integration
  • When a data processor changes their terms or data handling practices
  • When you start processing a new category of personal data
  • After a significant change in applicable law (e.g. new EDPB guidance, Schrems II ruling)
  • At minimum, review your Privacy Policy once per year

Frequently asked questions

Ready to check your website?

Enter your URL below and get a free GDPR compliance scan in seconds.

Free scan No account required Results in under 30 seconds