Why is a website check important?
Websites are one of the most common sources of data protection violations. Tracking scripts, fonts loaded from Google, embedded YouTube videos, contact forms — all of these can cause data protection problems if they are not implemented correctly.
Supervisory authorities actively check websites and impose fines — even against small businesses.
What we check
Privacy policy
- Is it complete per Art. 13/14 GDPR?
- Are all services in use mentioned?
- Is it current and written in clear language?
- Is it easy to find (footer, legal notice)?
Consent management (cookie banner)
- Is there a GDPR-compliant cookie banner in place?
- Are non-essential cookies only set after consent?
- Is consent revocable and documented?
- Does the CMP meet current regulatory requirements?
Tracking and analytics
- Which tracking tools are active (Google Analytics, Meta Pixel, etc.)?
- Are these correctly loaded only after consent?
- Are IP addresses anonymized?
- Are there third-country transfers, and are they safeguarded?
Third-party services and embeds
- Google Fonts (a frequent source of cease-and-desist letters)
- Embedded YouTube videos and social media buttons
- Contact forms and where they route data
- CDN services and external scripts
Legal notice and legal pages
- Is the legal notice (Impressum) complete per § 5 TMG?
- Are the links to the privacy policy and legal notice correctly set?
What you receive
After the check, you receive a written report with:
- An assessment of each area reviewed
- A clear classification: compliant / needs revision / critical
- Concrete, prioritized recommendations for action
- Implementation guidance (which plugin, which setting)
On request, we also support you with implementation.