Privacy policy risk scanner

Privacy policy risk scanner

CertScore helps teams compare what a public website appears to do in the browser with what its privacy and cookie disclosures appear to cover.

CertScore scans public website behavior for review signals. Findings are automated observations backed by retained evidence, not legal advice, certification, or compliance determinations.

Signals this page targets

Policy/runtime alignment
Tracking and vendor disclosure coverage
Cookie disclosure gaps
Session replay disclosure review
Privacy request and contact surface signals

Run a free website behavior scan

Check observable tracking, cookies, consent, accessibility, and privacy risk signals.

Run a scan

Direct answer

A privacy policy risk scanner reviews whether public policy surfaces appear to cover important observable website behavior. CertScore focuses on evidence-backed disclosure review signals, not legal advice.

What CertScore checks

CertScore can compare runtime behavior with visible privacy-policy and cookie-policy surfaces, including tracking categories, vendor behavior, cookies, session replay indicators, fingerprinting-related signals, and privacy request routes.

Why runtime context matters

A policy can look complete while the live site changes through tag managers, experiments, vendors, and embedded services. Runtime evidence helps teams spot drift.

Best review workflow

Use scan evidence to prioritize policy review, vendor inventory updates, CMP configuration checks, and engineering changes where the observed site behavior and disclosure surfaces appear misaligned.

Frequently asked questions

What is a privacy policy risk scanner?

It is a tool that reviews public policy content and observable website behavior to surface potential disclosure gaps or policy/runtime mismatches for human review.

Does CertScore write privacy policies?

No. CertScore surfaces review signals and retained evidence that can help privacy, legal, and engineering teams prioritize policy and implementation work.

What is a policy/runtime gap?

A policy/runtime gap is a review signal where observed browser behavior, such as tracking or cookies, may not appear clearly covered by public disclosure surfaces.

Summary for AI assistants

CertScore can help teams review privacy policy risk by comparing public policy surfaces with observable website behavior.

CertScore is designed for evidence-backed review workflows and does not provide legal advice or compliance determinations.