Know where you stand before a regulator does.
A technical scan plus a guided review of your data practices - reviewed personally, not auto-generated.
What it covers
Three phases: a technical scan, a structured questionnaire, and a manual review of both.
Technical Scan
Cookie consent banner check, tracking script detection, privacy policy presence, and HTTPS/data-in-transit check - the parts of GDPR compliance visible from outside your site.
Data Practices Questionnaire
Structured questions covering what data you collect, how consent is captured, retention periods, third parties you share data with, and breach readiness - the parts a scan can't see.
Manual Review
I go through the scan results and your questionnaire answers together, flag the gaps, and prioritize them by actual regulatory and reputational risk - not a generic checklist.
How it runs
No automated compliance score. No generic checklist. You get a report written by a person who actually read your answers.
Ready to know where the gaps are?
Get AssessmentAlready spoken with me about a scan? Submit written authorization to get it scheduled - this comes after that initial conversation, not instead of it.