ConsentLens
Live data · Updated daily

GDPR Compliance Statistics

Aggregate data from 813 website scans — tracking consent violations, third-party trackers, and compliance scores across the web.

Data recalculated daily.

813

Websites scanned

62/100

Avg compliance score

0 = worst · 100 = best

12%

Fire trackers before consent

34%

Fully compliant

How many websites are GDPR compliant?

Compliance level assigned to each scanned website based on the severity and number of issues detected.

Compliant
275 (34%)
Low Risk
209 (26%)
Medium Risk
77 (9%)
High Risk
252 (31%)

What are the most common GDPR violations?

Ranked by the number of scanned websites where each issue was detected.

#ViolationAffected sites
1Advertising / remarketing trackers detected399(49%)
2Long-lived cookies detected386(47%)
3Tag manager present — verify all tags respect consent370(46%)
4Third-party cookies detected339(42%)
5No cookie consent banner detected261(32%)
6Tag manager detected with no consent mechanism229(28%)
7Consent banner missing reject option122(15%)
8Cookies set before consent91(11%)
9Google Conversion Linker tracking cookie set without consent78(10%)
10Google Conversion Linker tracking cookie present — verify consent gating59(7%)

Which trackers are most commonly found?

Number of scanned websites where each third-party tracking technology was detected. Includes trackers found both before and after consent.

How are compliance scores distributed?

Each website receives a 0–100 compliance score. A score above 80 indicates good compliance; below 40 indicates significant active violations.

0–19
14 (2%)
20–39
238 (29%)
40–59
77 (9%)
60–79
209 (26%)
80–100
275 (34%)

Scan activity — last 12 weeks

Number of completed website scans per week.

Methodology

What is a scanned website?
A unique domain that has been scanned at least once using the ConsentLens Playwright-based scanner. Statistics reflect the most recently completed scan per domain.
How is the compliance score calculated?
Each website receives a 0–100 score composed of four equally-weighted sub-scores: cookie consent handling, tracking transparency, third-party script management, and consent option availability.
What does 'fires before consent' mean?
Any tracker that sends a data-collection network request (XHR, fetch, beacon, or image pixel) within the first 500ms of page load, before the user has had the opportunity to interact with a consent interface.
Data freshness
Statistics are recalculated from the live database once per day. The timestamp at the top of this page shows when data was last computed.

Based on 813 completed scans.

Scan your website →
Report issue