A Guide to GDPR: Making your Website GDPR Compliant

image1-5-618x411-1 A Guide to GDPR: Making your Website GDPR Compliant

What is GDPR?

GDPR in its essence are rules designed by the EU and aims to help EU citizens have more control over their own data by setting a higher standard for data policies for all companies. The higher standard secures better transparency by simplifying the process and provides a standard of what data can be accessed and held.

All organizations who operate within the EU and that provide their services in the EU are GDPR compliant and must follow the legislation made by the EU. This means that most large-scale companies in the world must be GDPR compliant because of the services they provide to the EU.

A quick checklist for GDPR

To make sure that your website is GDPR compliant we have written a quick checklist to ensure that your website is following GDPR rules.

1. A personal Privacy Policy

Your privacy policy must be unique information that describes you, your company and what kind of work you do. Besides that, it must describe what types of information the website stores and how exactly the website collects these kinds of information. 

All third-party services such as Google Analytics, Facebook pixel, retargeting and tracking tools must be disclosed. This also means the website’s CMS (Content management system), plugins, applications, request forms and such.

Overall, the website must have a privacy policy that is unique to the website and describes all the necessary steps to be GDPR compliant.

2. List of cookies

You must have a list of all the cookies that are collected on your website from users/customers. Besides that, you must create a cookie notification on your website that offers users the ability to read your privacy policy and agree with it. 

The list of cookies helps create transparency and makes it easier for users/customers to know more precisely what data is collected from them.

3. Request forms for users

Your website must contain a user request form that allows the user to either delete or change their data. Before the GDPR, a lot of websites were not very transparent with data management and did not allow users to manage, change or see their own data.

4. Other forms

All forms on your website must be GDPR compliant. On every form there should be a checkbox that allows users to give their consent of having read and accepted the privacy policy page. You should also add a link to the privacy policy of your mail service provider.

5. Third party plugins and applications

You must make sure that all the used plugins and applications on your website are GDPR compliant. If any of your used plugins and applications are not GDPR compliant then the website is not compliant as well. Therefore, you would have to find an alternative that is GDPR compliant. 

6. GDPR compliant CMS

Almost every website uses a CMS (Content Management System) unless it is totally hard-coded, which is only a small percent of all websites. The CMS of your website is essential in the way that your website works and therefore it is very important that you make sure the CMS is updated and GDPR compliant as well. The CMS is often closely bound to the way data is stored and therefor you must either find a compliant CMS or make it compliant manually with custom code, third-party plugins or with custom code.

7. Checkout page

Checkout pages often look different from the rest of your website and often have a different functionality, which is allowing people to checkout. On those pages it is very important that you make a use consent checkbox and refer to your privacy policy before checkout.

8. Email notifications

Whenever users are added to your email list it is very important that the person has given their consent to store their personal data as well as allowing the company to send emails. Besides that, you must give them the ability to unsubscribe themselves from your email marketing list.

9. Data backup

Most websites have an auto data backup system that makes sure nothing is lost in case they must roll back in time. This could be due to a virus infection, accidental deletion or edits to the website and so forth. Most of these backups also contain user data and therefore it is very important that you do not have more than 3 customer data backups. As website owner you must make sure that the user data is secure and that you are the only one who can download them.

10. Opt-ins 

On most forms there are opt-ins that allow users to give their consent to the asked request. To fully follow all legislation regarding data management and storage you must remove all automatic opt-ins on your website. If users want to give their data, then they should choose that themselves instead of you making the choice beforehand.

On your sent newsletters you should allow users to opt-in or out with ease. Therefore, you should disable all double opt-ins on your newsletter.

11. Data Access Requests

Your website should have a process in place that allows users to request a copy of their own data. This allows users to make sure precisely what data your website is storing about them and allows for full transparency.


image2-5132 A Guide to GDPR: Making your Website GDPR Compliant

Mathias Minh Nguyen is a SEO and SEM expert who helps companies of all sizes get more recognition in the digital world by creating more awareness. He shares his thoughts and tips on different medias that concerns the digital world. He currently works for the Danish company Morningtrain and has based some of this informative article on Cookiebot’s information about CCPA compliance.

RECOMMENDED POSTS

Find Out More

Marketing Tips You Need

Keep In Touch

Quick Subscribe

Client Reviews Tell The Tale.

Help Educate LeadersDecember 22, 2024
Jillissa CooperOctober 31, 2024
Paul GrewSeptember 25, 2024
Nicole NoblesApril 18, 2024
Dan was a delight to work with. I needed a few headshots taken for my LinkedIn profile and Dan provided the easiest and most comfortable experience using state-of-the art equipment in a very professional setting. Also, the turn-around time on results was quick and I felt completely engaged and satisfied during the entire process. I highly recommend his services.Donny RitcharoenDecember 19, 2023
I got headshots taken and they turned out so well! The lighting was amazing.Tessa ChanMay 30, 2023
We used Appture to build a lodging website, and they were awesome! Dan went above and beyond to show us the functions and make all of our changes. Appture is our go to for web design from now on!Abigail HaleOctober 26, 2022
Appture knows their business and will go the extra mile for their customers. They do high quality work and provide great ongoing support.Chris McCorkindaleMay 24, 2022
Anita CauthornMay 24, 2022
It’s so rare in these times to find one man with so much wow factor and more rare to find men with similar interest and passion in their life journey as myself . Dan Elliott has been introduced to many in what is now considered as the Terror Dome , a place where many dreams are not deferred they are detoured to routes that lead to dead ends , he comes in full of optimism so infectious that he, maybe with out knowing is energizing those who have ventured where others would fear going with just the right jolt to forge on in the way of helping fallen humanity … His various fields of expertise has helped many in my region and I can only imagine the number he has effected beyond those I know … from day one I knew “ this was a man of kindred spirit “ Dan Elliott is a Gem and adds glimmer to things he touches … I’m a Witness ….and eternally grateful….L.Rashaan RichMay 21, 2022
Dan and his group are highly capable and knowledgeable. They work fast and get the job done. I highly recommend Appture.Justin FrankMarch 26, 2022
They are highly specialized in their work and constantly seek innovation.Ismail YenigulMarch 14, 2022
Dan is a marketing wizard. Honest, Experienced and a read deal. I am blessed to have him in my journey online :) Highly recommended.Sabbir HasanMarch 7, 2022
So much to say. Creative, Intelligent, Talented, Limitless, Affordable. It's amazing what these guys can do.Hack mackMay 17, 2019
We'd used some other agencies before, but man, they simply knocked us all over. After being in business for 30 years, I wonder how much more business we'd be doing if we'd hired them earlier.Rebecca HoneaMay 17, 2019