For compliance & legal teams
Tag Leak produces a scored, regulation-specific compliance report covering GDPR, UK GDPR, CCPA, LGPD, POPIA, and PDPA — with IAB TCF v2.2 detection, GCM v2 parameter audit, geo-scanning for jurisdiction-specific behavior, and an AI Remediation Document as a traceable evidence artifact.
Free scan — no signup required
A visually present consent banner does not mean tags are blocked. Many CMP implementations fail to prevent GA4, Meta Pixel, or ad network scripts from firing before consent interaction. Tag Leak tests this with a live browser — not a static scan.
ICO, CNIL, and DPA audits increasingly look at GCM v2 implementation, IAB TCF v2.2 compliance, cookie lifetime (the ICO's 13-month threshold), and security headers. A standard cookie scanner won't cover these.
A site may serve a compliant experience to EU visitors (Cookiebot blocking everything) but a non-compliant version to US visitors (no consent banner at all). Geo-scanning from DE, UK, US, Brazil, and Singapore surfaces this.
How Tag Leak helps
Every finding is documented with the exact technical evidence: which tag, which endpoint, which cookie, which parameter, which page, and from which jurisdiction.
Every Tag Leak scan automatically evaluates compliance against GDPR (EU), UK GDPR (ICO), CCPA/CPRA (California), LGPD (Brazil), POPIA (South Africa), and PDPA (Thailand). Each regulation produces a score and a per-check pass/fail breakdown that maps to the specific technical requirements of that framework.
IAB TCF v2.2 is the technical consent standard all IAB-registered CMPs must implement. Tag Leak calls __tcfapi directly — the same API DPA verification tools use — and checks the version (v2.2 vs outdated v2.0), event status, TC string presence, and consent status for each of the 11 IAB purposes.
Scan your site from real IPs in Germany (GDPR), United Kingdom (UK GDPR / PECR), United States (CCPA), Brazil (LGPD), and Singapore (PDPA). Geo-redirects are flagged when the hostname changes after navigation, and the report shows the version of the site actually served to that jurisdiction.
Generated from your actual findings — not a generic template. The Remediation Document serves as a dated, structured record of your compliance assessment and the remediation steps assigned to each team. Download as PDF for your audit file.
No signup required for the initial scan. See your compliance score, pre-consent violations, and regulation-specific results in 60 seconds.
No signup required. Results in 60 seconds.