GDPR applies to any site processing European user data. Fines can reach 4% of global revenue. Here's how to comply.
1. Cookie banner
Clear distinction. Refusal as easy as acceptance.
2. Legal notice & privacy policy
Controller identity. Purposes. Retention.
3. Forms
Clear consent checkbox. No pre-checked.
4. Newsletter
Double opt-in mandatory.
5. Subprocessors
List of all third-party tools. Signed DPAs.
6. Security
HTTPS mandatory. Bcrypt password hashing.