A website data protection audit in minutes

Our GDPR scanner helps data protection professionals create comprehensive technical audit reports without any hassle.
Manually scanning websites for vulnerabilities is time-consuming and no fun. decareto uses automation to identify all third-party services and cookies, scan sub-pages of websites, and create comprehensive reports with risk assessment.
  • decareto is the most professional solution for analyzing a website. The evaluation is reliable and gives
    concrete advice for optimization and thus for DSGVO compliance of the website. In all cases, we have also
    realized with the report the need for accountability and documentation of a data controller in terms of
    data protection.

    We as data protection officers are very happy to rely on this tool, which was created by a passionate team
    around Eckhard Schneider. It is important to emphasize that Mr. Schneider always has a very open ear for
    wishes and requirements from the data protection community, and always implements these ideas with a high
    level of expertise, passion and practicality. We are thrilled and can hardly imagine working without
    decareto. An absolute recommendation!
    WOLFGANG EVERS
    Datenschutzzentrale.de
  • Our own ambition is to play in the top third of the Champions League in the area of data protection and
    in the top third in the field of data protection and information security. To do this, however, we need
    partners and their tools that fully meet this requirement!

    In the area of data protection, we have succeeded in particular with decareto!
    THOMAS FLOSS
    EDV-Unternehmensberatung Floß GmbH
  • With the introduction of decareto, we have found the perfect support for website analysis. The software convinces
    by its impressive efficiency. The support scores with competence, professionalism and speed. With the proactive
    monitoring of customer websites, we receive fast and reliable information about critical changes to the websites,
    even and especially when marketing has been too impatient again. This is another reason why decareto is our first choice for website analysis.
    GÜNTHER SCHWIERZY
    Schwierzy & Partner KG
  • As an external data protection officer, I also see it as my task to help my customers achieve a legally
    compliant Internet presence. In order to be able to check the existing web pages in a qualified,
    economical and regular manner, I have decided to use the DSGVO scanner from decareto. It delivers reliable
    and clear reports that can conveniently be sent to the person responsible.

    Very important for me is that, in addition to my rudimentary html knowledge, I receive support from
    decareto that quickly and fully analyzes and precisely documents every issue. This allows any web
    programmer statement, "That can't be right" to be constructively invalidated. I am very satisfied with the
    DSGVO scanner and the support and can only recommend it. Many thanks for this assistance!
    DIETMAR FAUDE
    SIDAPRON, external data protection officer
  • decareto provides us with a very good basis for auditing customer websites, and the results are presented
    in a visually appealing way so that they can be shared with customers as a report together with measures.
    This saves us time that we can spend more usefully, especially because decareto takes the burden of
    checking sub-pages off our shoulders. There's really not much to say about the support - very personal and
    lightning fast!
    MAAK ROBERTS
    LEROIL Datenschutz
  • decareto has become an outstanding tool and one can guess what additional functions will be added in the
    future. It helps us data protection experts in an exemplary way to show and understand very complex
    issues.
    STEFFEN WACKER
    W-consults
  • We intensively tested many providers on the market. In the end, we chose decareto. A choice that, even in
    retrospect, proved to be the right one. Before using decareto, the data protection assessment of a
    customer website took several hours. Today, decareto does this work for us and outputs the result as a
    clear report.

    We also give decareto an extra star for its support and continuous development.
    RALF MÜLLER
    GesMIT mbH
  • The decareto website audit has become a valuable tool for us to better advise our customers on technical
    data protection issues. We have already been able to use it to make a number of customer websites more
    legally compliant.

    The report is structured in a very logical and understandable way, it provides us with very valuable
    information about cookies and external services, and it also saves us a lot of time.

    Big praise, also, for the decareto support, which responds to requests quickly and competently. We gladly
    give 5 out of 5 stars and would not want to miss the tool in our daily work!
    RALF TURBAN
    Mein-Datenschutzberater
  • decareto provides me with an excellent system for performing the many website analyses of my customers
    with less effort. The reports look very professional and I systematically discover changes to the websites
    so that I can actively approach those responsible and improve the customer relationship.

    decareto convinces with a good and very timely support. Even for issues that take longer to implement, I
    am proactively informed about progress on a regular basis. The developers also continuously improve the
    tool and take suggestions for improvement into account.
    EDMUND HILT
    hilt evolution
  • With decareto, we have found a tool that perfectly supports us in checking websites. If any questions
    arise, decareto support is available to us as a competent contact.

    decareto is an elementary component of our consulting portfolio.
    STEFAN BACHMANN
    INES IT
  • As external data protection officers we have to keep an eye on a lot of our clients' websites. Decareto
    provides reliable help and notifies us automatically regarding every change that is relevant to data
    protection. This enormously facilitates our daily work.
    STEFAN PIETSCH
    Managing Director, Pietsch IT GmbH
  • The decareto app is an ideal tool for external data protection officers and data protection advisors. The
    IT.DS consulting firm saves an enormous amount of time in the assessment of their clients' websites – and
    that with increased flexibility. Thanks to its clear presentation, the decareto app is also ideally suited
    for companies without great data protection knowledge.
    SVEN MEYZIS
    Owner, IT.DS Consulting
  • As a consulting firm that serves many small and medium-sized companies as well as law firms, we are faced
    daily with the challenge of checking their websites for data protection-relevant content. decareto offers
    us the professional support we have been looking for for a long time to quickly and competently gain an
    overview in the jungle of numerous applications, cookies and reach measurements. Photo: Barbara Obermaier
    DIRK MUNKER
    Managing Partner, Munker Privacy Consulting GmbH
  • There are countless ways to track down the weaknesses on websites, and if you regularly educate yourself
    and keep on track, you can certainly achieve this yourself for a few web projects. However, no tool I know
    of makes it as easy, reliable and convenient and at the same time summarises it so clearly in a report as
    decareto's solution does. And their solution does not stand still. It is constantly being developed
    further and both criticism and suggestions for improvement are taken very seriously.  

    Many things are already improved and expanded in the next monthly update cycle. decareto has become an
    indispensable monitoring tool for me that makes tedious manual research superfluous. The time saved is
    simply phenomenal and I now have much more time for other projects.
    RAFAEL GAUS
    Managing Director, Konzepttreu GmbH
  • decareto has become an indispensable tool for our company in a short time.
    KONRAD BECKER
    Owner, VINDEX Datenschutz
  • We look after a large number of clients and agencies for whom decareto is the ideal tool to check whether
    their website complies with the EU-GDPR and the E-Privacy Directive. The report shows in a clear and and
    comprehensible way where hidden deficiencies exist and where remedial action needs to be taken.
    WOLFGANG WENK
    Data Protection Officer/Auditor (TÜV, UDIS)
  • We serve many clients in the area of data protection. The challenges, especially in cookie handling and
    analysis are becoming increasingly complex. With the help of decareto we can provide highly automated
    support to our clients and react immediately to deviations. Great and above all clear tool!
    SVEN WESCHLER
    Managing Partner, Iqanta GmbH

Cloud-based, secure, with customer protection

Our software is cloud-based and requires no installation, so you can instantly submit websites and have them audited. We also pay attention to security and customer protection - your data is stored on servers in Germany. And we don't offer data protection consulting, which means we are not competing with your business.

decareto advantages over free tools

You can also perform a website check with apps like Webbkoll or the Browser Developer tools, but decareto provides a more comprehensive analysis in a fraction of the time.
External services usually set 1st-party cookies that can only be identified by name. You have to guess or research at great expense what their source is, and which purpose they have
The same applies to external services - based on downstream requests, not only the service itself must be identified, but also its properties (purpose, data transfer to insecure third countries, etc), which neither Webbkoll nor the development tools can do.
For a complete analysis, all sub-pages of a website must be checked, because especially services like captchas, videos, maps or social plugins are often used on subpages.
An audit must also show cookies and services that are loaded only after consent has been given via a consent banner - again for all subpages. In particular, cookies and services requiring consent must be detected that are loaded without consent.
These aspects are fully automated by decareto, manual execution with free tools is not practical when looking for this depth.

All your websites at a glance

Identifying vulnerabilities through cookies and external services is hard enough for a single web presence. Our database details of many thousands of providers, enabling the thorough identification of external services and cookies. Our crawler also scans sub-pages of the websites, achieving a level of detail for your audit reports that would not be possible manually.

Professional looking reports for your customers

You can share reports with customers or colleagues via a shared link or as a PDF or Word export, if desired in your company's corporate design. You can set up an automated dispatch so that your test report is always sent by us on time.

Comprehensible presentation of the results

decareto shows data protection breaches in an easy-to-understand management summary:
Use of non-essential cookies or third-party services without consent
Transfer of data to unsafe third country
Violation of the information requirements on external services in the privacy policy.

Cookies and services at a glance

All cookies, web storage items and third-party services are listed so that you have comprehensive data on the data processing by third parties on your website:
Cookie storage duration
Provider of the cookie, web storage item or service
Purpose of the cookie or service (advertising, analytics, functional, etc.)
Setting with or without consent
Will data be transferred out of the EU jurisdiction?

Email notifications

You don't need to do regular checks, because we scan each of your websites once a day and send you a notification if any relevant changes have occurred.

Server security check

decareto checks whether data is transmitted encrypted, whether the SSL certificate is state of the art, and whether correct security headers are configured.

Check forms for compliance

A full decareto scan searches sub-pages for (contact) forms and displays a screenshot and all found places. This allows you to check forms for GDPR compliance without having to go to all pages of the website.

A website audit from only 5€

All decareto plans allow you to update websites as often as you like. Even with our Starter plan, you can perform 120 websites per year, including full scans of the sub-sites - this makes decareto attractive even for data protection officers with just a few customers. Example: If you have 30 customers, you can perform an audit for each customer once per quarter with the "Starter" plan.

Our plans and trial options

You can test decareto for 14 days without any obligation. A 14-day-trial does not create a contract. If you do not wish to extend the trial, your access and data will be deleted at the end of the trial period. All prices shown are exclusive of VAT. The minimum contract period is one year.
The number of websites (10, 50, 100) indicates how many websites are registered on your account at the same time. These are constantly monitored, and you will receive a notification for them in case of deterioration in the level of data protection. You can delete websites at any time and replace them with new ones.
In all plans, you can scan the home page of a website as many times as you want.
We automatically run a deep scan once a month. You can also start the full scan manually (except in the "Starter" plan).
decareto can scan login-protected areas in stores, intranets or test versions of websites.
You can use the decareto REST API to automatically create websites and query report results. This allows decareto to be integrated with external data protection management tools.
Reports can be sent to customers automatically, e.g. on a quarterly basis.
Reports can be exported as PDF or shared via a link. We can configure your own domain for this.
As part of our consulting packages, we support you in resolving data protection problems on websites. To do this, we work together with data protection officers and IT departments or agencies, and provide support in selecting and configuring consent platforms and privacy-compliant tools.