Find your website’s GDPR gaps before the regulator does.

Enter your address: in about a minute we test cookies, trackers and your consent banner the way an auditor would, explain each problem in plain words and give you the exact fix.

No credit card required
First findings in about a minute
No legal expertise needed
Your site right now
Non-compliant
43
/100
Compliance score
Cookies placed before consentHigh priority
No "Reject All" buttonConsent flow to review
Google Analytics without consentTransfer to document
Privacy Policy foundCompliant
≈ 60s
to your first result
400+
trackers recognised
20+
consent platforms (CMPs) detected
14 days
free Pro trial

Everything you need, in one place

You do not need to be a GDPR expert

RGPDScan turns technical and legal checks into clear answers. See what is wrong, why it matters and how to fix it.

01

We check your website

Cookies, trackers, forms, consent banner and legal pages are checked automatically.

02

You understand the result

A clear score and priorities help you start with the issues that matter most.

03

You know what to fix

Every issue includes a plain explanation and a concrete action for your team or provider.

04

We keep monitoring

Scheduled scans alert you when a website update creates a new risk.

You get a plan, not an incomprehensible list.

Priorities, affected pages, guidance and fix tracking.

See an example
GDPR/EU legal reference

Laws change. Our scanner keeps up.

GDPR, AI Act, DSA and accessibility (EAA). Our team maintains the legal reference and the audit engine applies these rules to every scan.

  • GDPR, AI Act, DSA, accessibility (EAA) reference
  • Every text reviewed by our experts
  • Rules built directly into the audit engine
  • Re-scan on demand to check your compliance
RGPDScan legal reference
HIGH

Cookie consent, banner and opt-in

RGPD

HIGH

AI system / chatbot transparency

AI Act

MED

Digital accessibility and mandatory statement

EAA

Works with your stack

WordPressShopifyWebflowWixPrestaShopNext.jsReactVueAstroStripeHubSpotMailchimpBrevoKlaviyoGoogle AnalyticsMeta PixelCloudflareAWSOVH
AI Detection

Dark Pattern Detection

Our AI analyzes consent banners to identify manipulative designs that violate GDPR guidelines. Each violation is classified by risk level.

"Reject" button less visible
high
Pre-checked boxes
critical
Reject requires 3+ clicks
high
Confusing language
medium
4 Violations
We use cookies

By continuing, you accept our use of cookies to improve your experience.

AI Analysis
Banner compliance score
23/100
Tracker Scanner

Complete mapping of your trackers

Our engine detects and classifies all cookies and third-party scripts on your site.

Detected trackers
ServiceTransferStatus
Google AnalyticsUSA
Facebook PixelUSA
HotJarUSA
CloudflareEU
DoubleClickUSA
Summary: 12 trackers detected, 5 non-compliant
Cookies detected
24
8 necessary10 analytics6 marketing
Non-EU transfers
5
USA (4), Singapore (1)
GDPR Score
47/100
8 fixes recommended

See the product in action

See exactly what you get after every scan

More than a score. RGPDScan gathers evidence, explains what to fix and verifies that the issue is gone.

Explore the sample report
app.rgpdscan.com

Compliance report

shop-demo.example

42 pages analyzed · 38 seconds

64/100

Critical

2

Major

5

Checks passed

18

Meta Pixel loaded before consent

Evidence: connect.facebook.net

Retention periods are missing

Evidence: Policy analyzed, no duration found

Everything RGPDScan does

Everything we detect, help fix and monitor

From the first scan to continuous monitoring, every check and every remediation tool lives in one platform.

Cookie detection

Inventory, category, duration, domain and risk level.

Trackers before consent

Advertising, analytics, pixels and fingerprinting loaded too early.

Consent banner and dark patterns

Reject button, preselected choices, contrast and number of clicks.

Legal-page analysis

Privacy, cookies, legal notice and terms pages.

Policy and activity consistency

Matches what the website does with what its policy declares.

Non-EU data transfers

Destination countries, vendors and safeguards detected.

Website security

HTTPS, cookie attributes and security headers.

WCAG 2.2 accessibility

50+ criteria, annotated screenshots and suggested fixes.

SEO and AI visibility

SEO structure, performance and visibility in AI answers.

Prioritized action plan

Actions ranked by urgency, impact and affected page.

Report assistant

Ask questions and get answers grounded in your scan.

Documents and PDF reports

Tailored documents, detailed exports and white-label reports.

Custom cookie banner

Configurable design, categories, languages and Consent Mode.

Scheduled scans

Automatic weekly or monthly compliance checks.

Regression alerts

Email when the score drops or a new risk appears.

History and verification

Compare scans and confirm that every fix works.

Multi-site and clients

Consolidated workspace for teams, groups and agencies.

API and webhooks

Connect audits to your CI/CD, CRM or client portal.

RGPDScan exclusive

How much would a CNIL fine cost you?

Competitors list violations. We quantify your risk in euros. Based on CNIL Art. 83 grid, your turnover and 87 analyzed CNIL deliberations.

  • CNIL Art. 83 grid (Tier 1 / Tier 2)
  • Legal cap computed from your real turnover
  • 87 documented CNIL fines (2019-2026)
  • Recommendations prioritized by ROI
CNIL fine estimate
High risk
Annual turnover
TPE · 500k€PME · 5M€PME+ · 25M€ETI · 150M€
7
Violations
5
Actions
50K-200K€
Probable fine
Legal cap: max(20M€, 4% × 5M€) = 20M€
Report assistant

Ask questions about your report

Ask about scan findings, priorities, affected pages or legal references. Answers stay tied to observed evidence.

Are my GA cookies compliant?
No. Google Analytics drops `_ga` before consent (Art. 82). Enable consent mode v2 or migrate to Plausible. CNIL ruling SAN-2022-016.
Trust signal

Public Badge & Privacy Label

Display your GDPR score on your site like an Apple nutrition label. SVG badge + iframe Privacy Label. RGPDScan backlink included.

RGPDRGPDScanA92
Nutrition
RGPDScan
Score92
Cookies8
Trackers3
The Audit Process

How our auditor works

A military-grade analysis of your digital footprint.

01

The site is crawled

Pages, scripts, forms, cookies and third-party calls are inventoried.

02

Declarations are read

Policies are recognized in 25 languages and their content is analyzed.

03

Evidence is matched to policies

Example: an observed tracker should have a declared purpose and recipient.

04

A verifiable plan is produced

Every action keeps its evidence, affected page and legal reference.

Example evidence match

Meta Pixel × politique

NEEDS WORK
Observed on site
  • connect.facebook.netfound
  • Marketing tracker3 pages
  • Before consentyes
Declared in policy
  • Purposepresent
  • Recipientmissing
  • Non-EU transfermissing

Suggested action

Block the pixel before consent and document Meta as a recipient with the transfer mechanism used.

Social Proof

GDPR sanctions are very real

CNIL and European authorities regularly sanction non-compliant companies. Here are some recent examples:

Meta (Facebook)
€1.2B
TikTok
€345M
Criteo
€40M
Microsoft Ireland
€20M

Most common violations

Cookies placed without consentCritical
Missing or hidden "Reject" buttonMajor
Data transfer outside EUImportant
Dark patterns (manipulation)Important
Comparison

Why RGPDScan vs the competition

Honest comparison with leading GDPR/CMP tools. No bias, real prices.

FeatureRGPDScanCookiebotWebLegalAxeptio
Starting priceTest free9€/month29€/monthFree
Pro plan39€/mo49€/mo79€/mo52€/mo
Full GDPR scan
AI dark pattern detection
WCAG accessibility audit
AI document generator
Customizable cookie banner
GDPR/EU legal reference
White-label (agency)
One-time audit (no subscription)49€

Prices verified May 2026. See all 16 comparisons →

Simple pricing

Choose how far you want to go

Start with a free check. Try Pro free for 14 days when you need proof of compliance. Pay yearly and get 2 months free.

Free check

0€

See whether RGPDScan detects useful risks on your website.

  • 1 site
  • 1 scan
  • 2 critical issues visible
  • Other issues blurred
  • No PDF · No monitoring
No subscription

One-time audit

49€once

A complete audit and a second scan to verify your fixes.

  • 1 site
  • Up to 100 pages
  • Detailed PDF report
  • 1 verification scan
  • 12 months of access

Solo

19€/month

Full audits and exports for one professional website.

  • 1 site
  • Unlimited scans
  • PDF reports
  • 6-month history
  • Up to 25 pages per scan
  • Action plan with fix verification
  • AI compliance assistant
Recommended

Pro

39€/month

Continuous compliance for growing websites and ecommerce.

  • 3 sites
  • Unlimited scans
  • GDPR + Accessibility audit
  • Verified remediation workflow
  • Auto monitoring + email alerts
  • Customizable cookie banner
  • Consent evidence log (CSV export)
  • Privacy-request form with deadlines

Cancel before day 14, pay nothing

White label

Agency

99€/month

Manage client sites and deliver branded compliance reports.

  • 15 sites
  • Everything in Pro
  • API access
  • Client workspaces and white-label reports
  • Priority support
Frequently asked questions

Need help?

Answers to the most common questions.

What exactly is GDPR?

The GDPR (General Data Protection Regulation) is a European regulation that came into force in 2018. It governs the collection and processing of personal data of European citizens.

Does my site need to be GDPR compliant?

If your site collects data from European visitors (via cookies, forms, or trackers), you must be GDPR compliant, whether your company is based in Europe or not.

How long does an analysis take?

A complete analysis typically takes between 30 seconds and 2 minutes, depending on the size of your site and the number of pages to scan.

Is my site data secure?

Yes, we only analyze public elements of your site (what a visitor can see). We do not store any sensitive data and all communications are encrypted.

Can I export the results?

Yes, paid plans allow you to export a complete PDF report that you can share with your team or DPO.

How is the Solo plan different from Pro?

Solo (€19/month) covers one site, scans of up to 25 pages, PDF reports and six months of history. Pro (€39/month) covers three sites and adds 50-page scans, accessibility and SEO audits, scheduled monitoring, email alerts and a customizable banner. Agence (€99/month) covers 15 sites with white-label reports, API and webhooks.

Can I get one audit without subscribing?

Yes. The €49 One-time audit includes one in-depth scan of up to 100 pages, accessibility and SEO audits, three documents and a PDF report kept for 12 months. It does not include scheduled monitoring or alerts; choose Pro for ongoing follow-up.

Is the TEST FOR FREE plan really free?

Yes. The free test covers 1 site and 1 scan with no credit card. You see your overall score plus the 2 most critical GDPR findings. The €49 one-time audit or a paid plan unlocks the full report.

How is RGPDScan different from Cookiebot or OneTrust?

Cookiebot focuses on cookie consent. OneTrust targets enterprise privacy programs. RGPDScan combines website auditing, accessibility checks, legal-document review and a customizable cookie banner for small teams and agencies.

Is my data secure and hosted in EU?

Yes. RGPDScan runs on Cloudflare (EU edge), our database is Cloudflare D1, scan data is stored encrypted, and PDF reports are generated on-demand without persistent storage of analysis results. We never sell your data. Full privacy policy and DPA available on demand for Pro and Agence plans.

Can I cancel my subscription anytime?

Yes, directly from your dashboard through the Stripe Customer Portal. Cancellation takes effect at the end of the current billing period and access remains active until then.

GDPR Compliance

Ready to check your site's compliance?

Start free and get your first report in less than a minute.

No credit card required • Free forever plan