What we monitor

The exact things regulators look for

We don't guess what matters. We check the specific consent elements cited in real enforcement actions — every single day.

Consent Checkboxes

Pre-checked boxes = invalid consent under GDPR. We verify every checkbox is unchecked by default, every day.

Privacy Policy Links

A missing or broken privacy link next to a form is an instant Article 13 violation. We catch it before a regulator does.

Cookie Banners

Missing cookie banner? No consent language alongside action buttons? We detect cookie banner presence and evaluate core compliance signals every day.

Dark Patterns

Pre-checked consent checkboxes and missing opt-in mechanisms — the most common GDPR violations. We flag them the day they appear.

Disclosure Visibility

We flag when consent text is missing near forms or too vague to constitute valid consent. No disclosure, no defense.

Evidence Retention

Compliance today means nothing if you can't prove it tomorrow. Every scan is stored with its evidence artifacts so you can look back months later.

How it works

From zero to audit-ready in under 5 minutes

No code to install. No scripts to embed. Enter your URL and we handle the rest — every day, automatically.

1

We visit your pages

A real browser visits your site daily — seeing exactly what your users (and regulators) see.

2

We capture everything

Screenshots, HTML snapshots, DOM consent elements — all timestamped and stored immutably.

3

We score every finding

20-rule engine rates each page 0–100. Deterministic — same page, same score, no exceptions.

4

You get a PDF evidence pack

Audit-ready report lands in your inbox: findings, screenshots, severity ratings, and exact fixes.

5

Your team stays informed

Auto-delivered to every stakeholder. Legal, compliance, developers — everyone sees the same truth.

6

Regressions get caught instantly

A deploy breaks your consent flow on Friday? You know by Saturday morning — not 3 months later.

Evidence artifacts

Evidence that holds up under scrutiny

Every scan produces six categories of verifiable evidence — the kind a regulator expects and a lawyer can use.

Full-page screenshots

Visual proof of what users actually saw

HTML snapshots

The raw page source — complete and securely stored

DOM consent elements

Every checkbox, banner, and disclosure captured

UTC timestamps

Precise date and time for every scan — provable and consistent

Historical scan trail

Proof of compliance over weeks, months, years

Actionable remediation

Exact steps to fix each finding, prioritized by severity

Example findings

The gaps hiding on your pages right now

These are real findings from real scans. Most sites have at least two. How many does yours have?

CRITICAL

Missing privacy link near form

Regulators expect a visible privacy policy link adjacent to every data-collection form.

Fix: Add a privacy policy link directly below or beside the form submit button.

CRITICAL

Pre-checked marketing consent

GDPR requires affirmative action — pre-checked boxes do not constitute valid consent.

Fix: Ensure all marketing consent checkboxes are unchecked by default.

CRITICAL

No consent text near checkbox

A checkbox without clear consent language next to it cannot constitute informed consent.

Fix: Add explicit consent text near each opt-in checkbox describing what the user agrees to.

HIGH

No consent checkbox on form

Forms collecting personal data without an explicit consent mechanism lack a lawful basis.

Fix: Add an explicit opt-in checkbox for marketing or data processing consent.

HIGH

No cookie banner detected

If your site uses cookies or trackers, a cookie consent banner is required under ePrivacy rules.

Fix: Implement a cookie consent banner with clear accept and preference controls.

MEDIUM

Double opt-in not detected

Double opt-in provides stronger evidence of consent and is required in some jurisdictions.

Fix: Implement email confirmation (double opt-in) for newsletter and marketing sign-ups.

Sample evidence pack

This is what you hand to the regulator

A complete, audit-ready PDF evidence pack — generated automatically after every scan. No scrambling. No screenshots at 2 AM. It's already done.

Evidence Pack Report

example.com

Generated 21 Mar 2026

82
Compliance score
82 / 100
Findings summary
3 critical, 2 medium
Screenshot evidence
12 captures
Timeline
Last 30 days
Remediation steps
5 action items

Security & data handling

Your evidence is locked down tighter than your data

Compliance evidence is only valuable if it's tamper-proof and access-controlled. We built for that from day one — not as an afterthought.

Encrypted storage
Role-based access
Retention controls
Evidence export
Secure deletion on request

Right now, your consent flow is eitherdefensible or it isn't.

You won't know which until someone asks for proof. Safeliant gives you that proof — automatically, daily, starting today.

No credit card required for the free scan