Technical audit · 2026-05-26

polizei.gv.at

Austrian Police, Regional Directorates

Austrian police website — 25 requests, 1 domain. Zero external requests, zero cookies, zero trackers. jQuery and Bootstrap are hosted locally. Server: myracloud, an Austrian CDN/WAF.

Timeline of the leak

+0 ms · load
All 25 requests go to [www.polizei.gv.at](https://www.polizei.gv.at). CSS, JS, fonts, images — all local.

Declared versus actual

Server-side log-based analytics — no cookies, no external services, not visible in the HAR — declared

Context

polizei.gv.at is the portal of the Landespolizeidirektionen, Austria’s regional police directorates. The audit was performed on the Burgenland page. HAR: 25 requests, 1 domain.

Minimal footprint

25 requests, all to [www.polizei.gv.at](https://www.polizei.gv.at). jQuery 3.5.1, Bootstrap, lightbox — hosted locally. Proprietary fonts. Server: myracloud (an Austrian cloud WAF/CDN). Zero cookies, zero external requests, zero trackers.

Policy — server-side analytics without cookies

The policy mentions an “Analysetool” based on server-side log files without cookies — this does not show up in the HAR, as expected. The legal basis for processing is Art. 6(1)(e), public task. The controller is the Landespolizeidirektion, and the processor is the Bundesminister für Inneres.

Conclusion

The police website is one of the cleanest in the Austrian series. 25 requests, 1 domain, zero external dependencies.

Evidence
Original (audit)
HAR file: at/polizei-gv-at-2026-05-26.har
SHA-256: 898d75092093901ca30034a247119065242bec85e017ebfdc2b8b8c32deef497
HAR files are stored on EU infrastructure (Proton Drive). SHA-256 is published for integrity verification.