ConsentLens
Live data · Updated daily

GDPR Compliance Statistics

Aggregate data from 744 website scans — tracking consent violations, third-party trackers, and compliance scores across the web.

Data recalculated daily.

744

Websites scanned

62/100

Avg compliance score

0 = worst · 100 = best

12%

Fire trackers before consent

32%

Fully compliant

How many websites are GDPR compliant?

Compliance level assigned to each scanned website based on the severity and number of issues detected.

Compliant
241 (32%)
Low Risk
195 (26%)
Medium Risk
70 (9%)
High Risk
238 (32%)

What are the most common GDPR violations?

Ranked by the number of scanned websites where each issue was detected.

#ViolationAffected sites
1Advertising / remarketing trackers detected370(50%)
2Long-lived cookies detected365(49%)
3Tag manager present — verify all tags respect consent341(46%)
4Third-party cookies detected321(43%)
5No cookie consent banner detected248(33%)
6Tag manager detected with no consent mechanism218(29%)
7Consent banner missing reject option114(15%)
8Cookies set before consent86(12%)
9Google Conversion Linker tracking cookie set without consent73(10%)
10Google Conversion Linker tracking cookie present — verify consent gating55(7%)

Which trackers are most commonly found?

Number of scanned websites where each third-party tracking technology was detected. Includes trackers found both before and after consent.

How are compliance scores distributed?

Each website receives a 0–100 compliance score. A score above 80 indicates good compliance; below 40 indicates significant active violations.

0–19
11 (1%)
20–39
227 (31%)
40–59
70 (9%)
60–79
195 (26%)
80–100
241 (32%)

Scan activity — last 12 weeks

Number of completed website scans per week.

Methodology

What is a scanned website?
A unique domain that has been scanned at least once using the ConsentLens Playwright-based scanner. Statistics reflect the most recently completed scan per domain.
How is the compliance score calculated?
Each website receives a 0–100 score composed of four equally-weighted sub-scores: cookie consent handling, tracking transparency, third-party script management, and consent option availability.
What does 'fires before consent' mean?
Any tracker that sends a data-collection network request (XHR, fetch, beacon, or image pixel) within the first 500ms of page load, before the user has had the opportunity to interact with a consent interface.
Data freshness
Statistics are recalculated from the live database once per day. The timestamp at the top of this page shows when data was last computed.

Based on 744 completed scans.

Scan your website →
Report issue