Find missing or broken policy links
The scan checks whether privacy and cookie policy links are visible and reachable from the public website. A policy cannot provide transparency if visitors cannot find or open it.
Free privacy policy checker
Check whether a website has a reachable privacy policy and compare its published disclosures with observable cookies, trackers, policy links, and consent signals. Free technical scan; no signup required.
Technical checks only, not legal advice.
Need a broader website GDPR compliance check? Use the online GDPR validator to review cookie consent, tracker behavior, policy links, and consent evidence in one flow.
The scan checks whether privacy and cookie policy links are visible and reachable from the public website. A policy cannot provide transparency if visitors cannot find or open it.
Detected cookies, trackers, pixels, and consent signals provide evidence for reviewing whether published policy claims reflect what the website actually loads.
The checker identifies observable website and policy signals. It does not certify GDPR compliance or decide whether every purpose, lawful basis, retention period, or transfer is legally valid.
Enter a public website URL and GDPRChecker loads the page as a first-time visitor. It looks for privacy and cookie policy links, checks whether those destinations are reachable, and records cookies, tracker scripts, pixels, third-party requests, banner controls, and common consent signals visible during the scan.
A useful privacy policy should be easy to find from common website entry points and relevant forms or consent interfaces. The technical check identifies public policy links and failed destinations. You should still manually review important templates, account areas, mobile layouts, and form-specific notices that a homepage scan may not encounter.
The report gives you a technical inventory to compare with the policy: analytics, advertising, session-recording, tag-management, and other third-party signals. A detected vendor that is absent from the policy may need investigation, classification, disclosure, blocking, or removal. Detection alone does not determine the lawful basis or final legal wording.
Qualified review is still needed for the controller identity, processing purposes, lawful bases, data recipients, international transfers, retention logic, data-subject rights, automated decisions, contact routes, and jurisdiction-specific obligations. Use automated findings to focus that review and document remediation rather than treating a score as certification.
Recheck after analytics, advertising, forms, embeds, plugins, apps, vendors, tag-manager containers, or consent settings change. Managed sites can retain scan history, review cookie inventory changes, and compare declarations with current findings so policy drift is easier to identify.
| Review area | Automated technical check | Human or legal review |
|---|---|---|
| Policy link | Checks whether a public policy link is found and reachable | Confirms the notice is shown at every required collection point |
| Live technologies | Detects observable cookies, trackers, pixels, and requests | Determines the correct purpose, lawful basis, and disclosure wording |
| Consent behavior | Reports banner and pre-consent technical signals | Assesses whether consent is valid and appropriate for each activity |
| Policy contents | Provides evidence for vendor and behavior comparison | Reviews controller details, rights, transfers, retention, and jurisdictional requirements |
| Ongoing accuracy | Supports repeat scans and change evidence | Approves policy updates and governance decisions |
Related GDPRChecker tools
GDPRChecker provides automated technical checks, templates, and operational guidance. It does not provide legal advice and does not guarantee compliance with GDPR, UK GDPR, ePrivacy, CCPA, PIPEDA, Law 25, or any other law.