Skip to content
PrivacyFixed
Live privacy intelligence

Every tracker.
In plain English.
Yours to fix.

Scan any website and see exactly which outside companies it shares your visit with β€” what they collect, when they fire, and how to stop them.

Free scanNo account neededResults in ~30 seconds
https://www.example-news.com
Scanning
Meta Pixel
Meta Platforms Inc.
ADVERTISING⚠ PRE-CONSENT
Google Analytics 4
Alphabet Inc.
ANALYTICS⚠ PRE-CONSENT
DoubleClick / DFP
Google Advertising
ADVERTISINGpost-consent
Canvas Fingerprinting
Unknown third party
FINGERPRINTPERSISTENT ID
Twitter / X Pixel
X Corp.
SOCIALpost-consent
5 trackers found Β· 2 fired before consentFix all Β· soon
Every scan counts the third-party connections following you across the web.
~80%of popular sites embed third-party trackers that load as the page opens β€” before any interaction.
// Princeton Web Census (Englehardt & Narayanan)
YesBrowser fingerprinting is widespread β€” identifying you even after you block every cookie.
// Mozilla / EFF fingerprinting research
What a scan answers

The questions a website never wants you to ask.

Every scan answers them in plain English β€” no jargon, no dashboards to decode. Here's what we shine a light on.

Who is getting your data?

We name every third party the site shares your visit with β€” Meta, Google, TikTok, X β€” and what each one collects.

Are you being fingerprinted?

We catch canvas, WebGL and audio fingerprinting β€” the tracking that survives cookie-blocking and even incognito mode.

Did anything fire before consent?

We time every tracker, so you see precisely what loaded before you ever touched β€œAccept.”

Which trackers hide as the site itself?

We unmask CNAME-cloaked trackers disguised as first-party domains β€” the ones standard blocklists miss completely.

Is a script listening to your keyboard?

We detect scripts that attach listeners to keyboard events on input fields β€” the same access that can be used to log what you type.

Is the site recording your session?

We flag session-replay tools (FullStory, Hotjar, Clarity and more) that record and re-watch every scroll, click and mouse movement.

How it works

Detect. Explain. Fix.

Three steps, in order β€” the same forensic pipeline runs on every scan, from finding what's hidden to shutting it down.

STEP 01

Detect

Seven scanner layers find every tracker, fingerprinting attempt, pre-consent fire, and CNAME-cloaked tracker that standard blocklists miss completely.

STEP 02

Explain

Plain English on every finding. Not β€œMeta Pixel detected” β€” β€œFacebook collected your device ID and the article you read, 300 ms before any consent was asked.”

STEP 03

Fix

Every finding comes with a prioritized fix and a copy-paste snippet β€” Consent Mode, cookie flags, a CSP starter, clean links β€” ready for a site owner to deploy.

Example report

What a scan of a typical news site reveals.

One ordinary article page, before you click anything. Severity is colour-coded; timing tells you whether a tracker waited for your consent β€” or didn't.

πŸ” example-news.com

Example Β· 5 findings
Meta Pixel
tracks page views & conversions
Advertising⚠ Pre-consent
Google Analytics 4
session & behaviour analytics
Analytics⚠ Pre-consent
DoubleClick / DFP
ad targeting & bidding
Advertisingpost-consent
Canvas Fingerprinting
builds a persistent device ID
FingerprintingPersistent ID
Twitter / X Pixel
social conversion tracking
Socialpost-consent
⚠ For teams & compliance

A tracker firing too early is no longer a footnote.

Pre-consent advertising pixels have become a live regulatory and litigation exposure in the EU and US. PrivacyFixed turns a scan into an action plan β€” showing your exposure and, soon, deploying compliant fixes.

Pre-consent pixels
are now a recurring basis for privacy complaints and enforcement β€” the exposure a scan surfaces first.
What it will check & fix
GDPR & ePrivacy consent timingEU
CCPA / CPRA opt-out & GPC signalsUS
Pre-consent pixel exposureCIPA
Auto-generated cookie & vendor inventory
Scheduled re-scans & drift alerts
How we measure

We show our work.

Every finding is reproducible. We load the site in a real headless browser, watch each network request and script as it executes, and match it against an open, versioned tracker taxonomy β€” not a guess.

Read the full methodology β†’
OpenVersioned tracker taxonomy β€” domains, scripts and beacon endpoints, matched by what actually executes, not a static guess.
7Detection layers run per scan: network capture, cookies, fingerprinting, fingerprint depth, consent timing, CNAME unmasking and plain-English synthesis.
0Telemetry sent about you. We scan sites, not the people reading this page.
Questions

Good to know.

Is the scan really free?
Yes. Scanning any public URL is free, needs no account, and returns a full report in about 30 seconds. Every scan also returns a fix guide with copy-paste snippets for site owners. Paid plans add saved scan history, continuous monitoring, and scheduled re-scans.
Do I need to install anything?
No. PrivacyFixed runs the scan for you β€” paste a URL and go. We're also finishing a browser extension that blocks trackers as you browse, but it isn't required to run a scan.
How do you catch trackers that hide from blocklists?
We don't rely on a static list. We watch the page execute in a real browser and inspect every request as it fires, which lets us unmask CNAME-cloaked trackers dressed up as first-party domains and catch fingerprinting that never sets a cookie at all.
Can I scan a website I don't own?
Yes β€” scanning only observes what any visitor's browser already receives, so you can inspect any public site. Owner-only features like deploying fixes will require verifying ownership of the domain.
Does PrivacyFixed track me?
No. We send no telemetry about the person running a scan and don't sell data β€” full stop. The whole point of the tool would collapse otherwise.

See what every site really shares about you.

Run a free scan in ~30 seconds β€” no account, no download. For teams, compliant one-click fixes are coming soon.