Skip to content
Compliance

A GDPR compliant website starts with an honest cookie banner.

Consent, withdrawal and privacy pages are built into the site from the first version and kept current as tools change. You don't have to wire up a consent tool, chase what each tracker sets, or rewrite a policy every time the site changes.

What the site does with consent.

  • Cookie consent banner

    Accept and Decline sit side by side at the same size, so saying no takes one click, exactly like saying yes.

  • No tracking before consent

    Analytics and ad tags load only after a visitor accepts. If they decline, none of that code is ever downloaded.

  • Consent that can be withdrawn

    A cookie settings link in the footer reopens the choice at any time, and withdrawing deletes the cookies those tools already set.

  • Consent that expires

    A choice lasts six months. Changing the cookie policy or adding a tracker asks every visitor again, so consent matches the current disclosure.

  • Privacy and cookie policies

    A privacy policy and a cookie policy written to match what the site actually collects, and updated when that changes.

  • Forms that ask only what's needed

    Enquiry forms collect what the reply needs and nothing more, which leaves less personal data to hold and less to explain.

How it works.

  1. 01

    Map what the site collects

    We list every form, tool and tracker on the site, so the banner and the policies describe what is really there.

  2. 02

    Build consent in

    The banner, the tracker gating and the cookie settings link ship with the site, and the policy pages are written to match.

  3. 03

    Keep it current

    When a tool is added or the policy changes, the pages are updated and the banner asks visitors again, inside the monthly fee.

Questions before you start.

How much does a GDPR compliant website cost?
Consent and privacy are not an add-on. They are built into every plan, starting with Foundation, the website on its own, at the same monthly price. Prices are on the plans page, with no annual contract and no setup fee.
Will my website be fully GDPR compliant?
We build the parts of the site the GDPR touches: consent, withdrawal, expiry, forms and the policy pages. Compliance also depends on how your business handles data away from the site, so we don't certify it, and legal advice stays with your own adviser.
What do EU regulators expect from a cookie banner?
That refusing is as easy as accepting, that trackers wait for a choice, and that consent can be withdrawn as easily as it was given. The banner we ship does all three, and asks again after six months, the period the French regulator CNIL recommends.
Can I still use analytics and ad tracking?
Yes, for visitors who accept. Analytics and ad tags load after consent and never before, so your numbers cover the people who said yes. That is the trade the rules ask for.
Do you write the privacy policy?
We write the privacy and cookie pages to match what the site actually collects, and keep them current as tools change. Have your adviser review them, since they also cover how your business handles the data once it arrives.

Let’s make your digital work compound.

Choose a time on Gabriel’s calendar. We’ll go through where you are today, what’s slowing growth, and what’s worth doing first, whether or not we work together.

Gabriel Espinheira

Gabriel Espinheira

Senior software engineer · English or Portuguese

A focused 30 minutes, not a sales pitch.