Best method: open the target site in a new tab and use the bookmarklet below (it reads the page you are viewing). If you prefer, you can paste the HTML source into the box.
What data does a website collect?
This checker analyzes HTML for trackers, third-party scripts, cookies hints and form fields. It can’t prove what the server stores, but it shows common collection signals. Everything runs locally (no upload).
Fetch may fail because of CORS. If it fails, use the bookmarklet or paste HTML.
Deep mode finds more hints but can include false positives.
Extracted from scripts, iframes, images, links.
Tip: in browser → right click → “View page source” → copy all. Or use bookmarklet.
Bookmarklet (drag to bookmarks bar, open target site, click it):
Important: This tool cannot see server-side logs, database storage, or what happens after JS runs. It detects common client-side signals (scripts, pixels, forms, and embedded services).
For a serious RGPD check, always compare with the site’s privacy policy and cookie banner behavior.