General Data Protection Regulation of the European Union

Meet the GDPR requirements and achieve compliance

  • Achieve a GDPR-compliant online presence for your website or app
  • Minimize data protection risks and associated fines and penalties
  • Document the collection, storage and use of personal data according to best practices
  • Benefit from privacy-compliant and autonomous solutions with us by implementing a CMP, with the highest possible opt-in rates
  • Turn compliance into real competitive advantage and delight your customers

Ask for a free initial consultation

What is the General Data Protection Regulation (GDPR)?

The European data protection law known as the General Data Protection Regulation (GDPR) has been in force since May 25, 2018.

What is the General Data Protection Regulation (GDPR)?

The European Union's General Data Protection Regulation (GDPR) comprises 99 articles that define the use and processing of personal data and the relevant protection obligations. This law has significantly influenced the data protection policies of other nations, such as the LGPD in Brazil.
Each EU member state has its own supervisory authority that monitors compliance with these regulations.

Who does the GDPR apply to?

Your company is obliged to comply with the General Data Protection Regulation if it meets one of the following criteria:

Companies in the EU

Every company based in Europe that processes personal data must comply with the requirements of the GDPR.

International companies

Companies that are not based in Europe but process the personal data of individuals in Europe must also comply with the GDPR.

Company size

The law applies regardless of the size of the company, i.e. for both small and large organizations.

GDPR compliance checklist for websites:


Check gelb
Check gelb
Check gelb

Make sure that your privacy policy is formulated in a clear and easy-to-understand privacy statement to adequately inform consumers.

Before you collect personal data, you must obtain the active consent (opt-in) of consumers, for example via a Consent Management Platform (CMP).

Automate your consent management with a Consent Management Platform (CMP) to be GDPR-compliant in the long term.

Achieve GDPR compliance with DWC

Carry out a data protection audit

We recommend that you carry out a data protection audit for your website or company. This will allow you to identify and systematically categorize all the personal data you collect from your users. The audit enables you to precisely record the type and scope of the data processed so that you can later present this information accurately in your privacy policy. This allows you to provide your users with comprehensive information about how their data is handled.

  • Free website check: Use our free service to check your website or app for security vulnerabilities.
  • Categorize data: Categorize the data you collect by type and define the legal basis for collecting it.
  • Create a privacy policy: Use the results of the audit as the basis for your privacy policy to provide consumers with comprehensive information about data collection, storage and management.
Carry out a data protection audit

Implement a Consent Management Platform (CMP)

The GDPR requires that voluntary, informed, unambiguous, revocable and verifiable consent is obtained from consumers prior to data collection. To meet these requirements, we recommend integrating a Consent Management Platform (CMP) on your website. This enables consumers to give or refuse their consent.

  • Consent management via CMP: Implement a CMP to provide users with clear options to consent or decline.
  • Link to privacy policies: Integrate references in your CMP to comprehensive privacy and cookie policies that comply with GDPR requirements.
  • Flexible consent options: Allow consumers to change their decision or withdraw their consent at any time.
  • Documentation and verification: Use the CMP to efficiently document the consent given and be able to prove it if necessary.
Implement a Consent Management Platform (CMP)

Create a GDPR-compliant privacy policy

If you collect personal data, you must provide data subjects with a privacy policy that contains the following information in accordance with Article 13 Chapter 3 of the GDPR.

  • Identity and contact information of your company and, if applicable, your representative.
  • Contact details of the data protection officer, if any.
  • Purpose and legal basis of the data processing and an explanation of legitimate interests, if this legal basis is used.
  • Recipients or categories of recipients of the data.
  • Information about the transfer of data to third countries or international organizations and the corresponding protective measures.
  • The period for which the data will be stored or the criteria used to determine that period.
  • Rights of data subjects, including the right to lodge a complaint with a supervisory authority.
  • Information on automated decision-making and profiling, if applicable.
Create a GDPR-compliant privacy policy

Meet all GDPR requirements with a Consent Management Platform (CMP)

What consumer rights apply under the GDPR?

Recht auf Auskunft

Right to information

The GDPR emphasizes the importance of transparency in data collection. Individuals have the right to be informed in detail about the collection and use of their data.

Recht auf Zugang

Right of access

Consumers can request access to their personal data stored by a company. This enables them to check the completeness and accuracy of the data.

Recht auf Löschung-1

Right to correction & deletion

Consumers have the right to have inaccurate or outdated personal data corrected. They can also request that a company deletes their data, provided there are no legal retention obligations to the contrary.

Recht auf opt out

Right to object

The right to object under the GDPR allows data subjects to object to the processing of their personal data at any time on grounds relating to their particular situation.

We implement the Usercentrics CMP for you

Usercentrics is the world's leading provider of Consent Management Platforms (CMP) and offers companies the optimal solution for handling user data in compliance with the law. As a proud partner of Usercentrics, we have already implemented numerous CMPs for companies around the world that comply with legal requirements.

The CMP integrates seamlessly into any technology stack, providing a customized solution for your business. Our expertise in consent and data management not only enables compliance with data protection regulations, but also optimal interaction with complementary technologies, such as server-side tagging. This ensures comprehensive and efficient data collection for a complete database that can be used specifically for marketing purposes.

We implement the Usercentrics CMP for you

Your benefits of the Usercentrics Consent Management Platform (CMP)

Centralized consent management

Using a CMP makes it possible to manage all data protection requirements clearly in one place. This helps to maintain an overview and ensure that all processes comply with the requirements.

Global data protection

Usercentrics' CMP enables you to efficiently fulfill data protection requirements in multiple states or countries. With this platform, you can ensure compliance with various data protection laws worldwide by addressing the specific requirements for consumers in the respective regions.

Seamless integration

The CMP from Usercentrics is characterized by its easy integration into common content management systems (CMS) and website builder platforms. In addition, the platform can be extensively customized to your specific requirements to ensure optimal functionality and user-friendliness.

Benefit from our expertise in Consent & Data Management

GDPR Checklist Cover

Download our free checklist for achieving GDPR compliance