The site is being rolled out gradually — sections and design are still being refined. Published audits are final: the methodology and evidence base for each of them do not change.

EU website data audit

Transparency starts
with network traffic analysis.

GDPR Audit examines the network requests captured in HAR files and compares them with the privacy policy.

We show the actual data transfers, the third-party services and the routes a site relies on in practice.

EU data residency guaranteed

EE US RU CN
Node in the EU Main hub (DE) Transfer within the EU Transfer outside the EU Global servers (transit)
EU AT BE BG CY CZ DE DK EE ES FI FR GR HR HU IE IT LT LU LV MT NL PL PT RO SE SI SK
NON-EU AD AL AM BA BY CH GB GE IS LI MD ME MK NO RS TR UA XK
1
Audits
0
Violations
1
Countries covered
1
Trackers found

From the map to actual checks

The map shows the direction of data flows and the infrastructure the project works with. Below are the individual HAR audits of real sites: government portals, healthcare services, financial resources and other publicly accessible systems.

Every audit is based on network traffic analysis and open technical data. The goal is to document the observable mechanisms by which the audited systems process and transfer data.

HAR capturesNetwork trafficOpen dataDocumented facts

How to use this

  • The Countries section groups audits by country. Each country has its own GDPR regulator and its own list of audited sites.
  • The Categories section groups sites by functional type (defence, healthcare, regulators and so on). Useful for comparing sites of the same type across countries.
  • The Audits section contains the full corpus in a single filterable list.
  • The Methodology section describes how each audit is conducted.

About the project and why it exists →

Latest audits

View all →