§ Free privacy review · 30 seconds

Is your site GDPR-ready?

Paste your URL. We'll scan for cookies set before consent, trackers, missing privacy notices and security issues, and rate the result.

Free tool · information only

This tool is a heuristic starting point for general information. It is not legal advice and using it does not create a lawyer-client relationship with HEXLaw. A formal engagement begins only when conflicts and KYC are cleared, an engagement letter is signed, and the agreed deposit is received. Information you submit is processed under our Privacy notice; prospective-client data is purged automatically after 12 months of inactivity if no engagement follows.

§ Cookies

Counts every cookie set before consent + categorises by purpose. Flags violations of ePrivacy Art. 5(3).

§ Trackers

Detects Google Analytics, Meta Pixel, LinkedIn Insight, Hotjar, Clarity and 15+ other vendors.

§ Consent

Identifies your CMP (OneTrust, Cookiebot, Cookieyes, Iubenda, Didomi, Termly, Usercentrics).

§ Policies

Checks for privacy policy, cookie policy and terms-of-service links.

§ Security

HTTPS, HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Referrer-Policy headers.

§ Forms

Flags forms collecting personal data without a linked privacy notice.

This is a server-side scan: we don't execute JavaScript. Many cookies and trackers load only after consent or via JS, so a clean scan is necessary but not sufficient. For a full audit including in-browser behaviour, contact Migle for a paid GDPR Audit.