California privacy laws mandate accessible privacy disclosures, cookie opt-outs, and visible "Do Not Sell or Share My Personal Info" links. Failure to comply brings fines up to $7,500 per violation.
Private scan. Checks footer links, privacy policy availability, cookie banners, and ad tracking pixels.
Auditing Web Architectures Against Legal Precedents
The California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA), grants California residents unprecedented control over their personal data. Under Cal. Civ. Code § 1798.135, businesses collecting or sharing consumer info via cookies, ad pixels, or web forms must provide straightforward opt-out mechanisms.
Many business owners mistakenly believe they do not 'sell' data because they do not exchange customer lists for cash. However, under the CPRA, firing a Meta Pixel, TikTok pixel, or Google Analytics 4 remarketing tag without user consent constitutes a "share for cross-context behavioral advertising", legally triggering full CCPA disclosure and opt-out obligations.
A visible link on every page labeled 'Do Not Sell or Share My Personal Info' and a compliant 'Privacy Policy' link.
Direct notification at or before the point of data collection detailing categories of personal info collected and purposes.
Prior consent or easy one-click opt-out before tracking pixels load, honoring Global Privacy Control (GPC) browser headers.
Two or more methods (e.g. web form and toll-free phone number) for consumers to submit deletion, correction, or access requests.