GENERAL DATA PROTECTION REGULATION · EU

GDPR: €20M in fines, or 4% of global revenue.

GDPR applies to any organization processing EU resident data, regardless of where you’re headquartered. Observable from the outside, and enforced with record fines.

GDPR FINDING · F-0118your-company.com
EU data processing⚠ Detected
Lawful basis⚠ Missing
Statute triggered✓ Art. 6
Class exposure€3.5M – €12M
SeverityHigh
REGULATION GUIDE

GDPR: what it is, who it applies to, and how regulators check.

The EU’s General Data Protection Regulation applies to any organization processing personal data of EU residents, with fines up to €20M or 4% of global revenue.

What is GDPR?
The EU’s data protection regulation. Applies extraterritorially under Art. 3: €20M or 4% of global turnover, whichever is higher.
Who does it apply to?
Any organization with a website accessible to EU residents that processes their personal data, including US companies.
What Privaini detects
Consent-mechanism failures, missing privacy disclosures, unlawful transfers, and tracker behavior, from the outside.

Who faces GDPR exposure.

Enterprises
US companies with EU-facing operations, EU employees, or EU customers.
See Enterprises →
M&A Advisors
EU target acquisition requires GDPR assessment pre-LOI (Art. 3 reach).
See M&A Advisors →
Insurers
EU-headquartered policyholders create cross-border exposure.
See Insurers →
Risk Advisors
Assess any client with EU exposure. 90 countries covered.
See Risk Advisors →

Every GDPR finding cites the specific article, timestamped and reproducible.

Your exposure is already visible.
See it before they do.

From your domain name to findings in 30 minutes.

No generic alerts · No installation · Domain name only · Results in 30 min

Opt-Out Signal Honored