
Website Guides
Practical guides to help European businesses understand and fix website issues.
Accessibility
ACM Enforcement: Digital Accessibility Is Now Mandatory
The ACM can now enforce digital accessibility requirements in the Netherlands. Here is what they check and what non-compliance means for your business.
Does the European Accessibility Act Apply to Your Business?
The EAA became enforceable in June 2025. Find out if it applies to your business, what it requires and what happens if you don't comply.
EAA Penalties: What Happens If Your Website Isn't Accessible
The European Accessibility Act is enforceable. Here are the penalties for non-compliance and what enforcement looks like in practice.
Accessibility Statement: What It Is and How to Write One
An accessibility statement shows your commitment to an accessible website. Here is what to include and a template you can use.
Restaurant Website Accessibility: Menu, Booking & Ordering
Your restaurant website menu, booking form and ordering system need to be accessible. Here is what to fix and how to do it.
Website Accessibility Overlays vs. Real Compliance
Accessibility overlays promise a one-click fix but don't deliver. Learn why they fail and what actually works.
Hotel Website Accessibility: Making Booking Work for Everyone
Hotel booking systems need to work for everyone. Here is how to make your hotel website accessible and meet EAA requirements.
GDPR & Privacy
Complete GDPR Website Audit: Step-by-Step Checklist
A step-by-step GDPR audit checklist for your website. Check cookies, tracking, privacy policy, forms, third-party services, and security in one pass.
Do I Need a Cookie Banner? A Simple Decision Guide
Not sure if your website needs a cookie banner? This simple guide helps you decide based on what your website actually does.
Dutch AP Cookie Warnings: What They Mean for Your Website
The Dutch Autoriteit Persoonsgegevens is warning websites about cookie issues. Here is what they check and how to fix your cookie setup.
GDPR Compliance Checklist for Your Website (2026)
A practical GDPR checklist for small business websites. Check cookies, privacy policy, consent forms, and tracking scripts.
Google Fonts and GDPR: Why Your Website Might Be Leaking Data
Loading Google Fonts from Google's servers sends visitor IP addresses to the US. A German court fined a website owner for this. Here is how to fix it.
How to Create a Privacy Policy (Free Generator + Guide)
Create a GDPR-compliant privacy policy for your website. Use our free generator or follow this guide to write one yourself.
Cookie Banner Requirements 2026: What Actually Counts
Most cookie banners fail basic GDPR requirements. Here is what yours actually needs: reject buttons, no dark patterns, real consent.
GDPR Fines for Small Businesses: Real Cases and Amounts
Real GDPR fines for small businesses: actual cases from 1,000 to 50,000 EUR. What triggers enforcement and how to avoid it.
Google Maps on Your Website: The GDPR Problem
Embedding Google Maps sends visitor IP addresses and browsing data to Google without consent. Here are GDPR-compliant alternatives.
Privacy Policy: What Must Be in It and What Is Optional
GDPR Articles 13 and 14 require 12 specific elements in your privacy policy. Here is exactly what must be there and what you can skip.
YouTube Embeds and GDPR: Why Your Video Sends Data to Google
Embedding a YouTube video on your site sends visitor data to Google before they press play. Here is what happens and how to fix it.
Image Copyright
CopyTrack, PicRights, or Getty: Is That Letter Legitimate?
Received a letter from CopyTrack, PicRights or Getty Images? Here is how to verify if it is real, what they can legally demand, and what to do next.
Getty Images Demand Letter: What to Do (2026 Guide)
Got a Getty Images demand letter? Here is what to do, step by step. Don't panic, don't ignore it, and don't pay immediately.
Legal Pages
KVK Number on Your Website: Is It Required?
Dutch businesses must display their KVK number on their website. Here is where to put it and what else is required.
ODR Platform Abolished: Remove the Link From Your Website
The EU Online Dispute Resolution platform was abolished in July 2025. If your website still links to it, here is what to do.
Impressum Requirements by Country: Germany, Austria and Beyond
Impressum requirements differ by country. Germany, Austria and Switzerland have strict rules. Here is what you need.
VAT Number Display: NL Sole Proprietors, Watch Out for BSN
Dutch sole proprietors must display a BTW-ID on their website, not their old BTW-nummer which contains their BSN. Here is what to use.
Germany: §5 DDG Replaced §5 TMG, Update Your Impressum
The German TMG was replaced by the DDG in 2024. If your Impressum still references TMG, here is what changed and how to update it.
Terms & Conditions for Your Website: What to Include
Terms and conditions protect your business and inform your customers. Here is what to include and what you can skip.
Security
My Website Says 'Not Secure'. Here's How to Fix It
Your browser shows 'Not Secure' for your website? Here is what it means and how to fix it step by step.
Website Security Checklist: 10 Things to Check Today
A practical security checklist for small business websites. 10 things you can check and fix today without technical expertise.
GDPR Requires a Secure Website: What You Need to Know
GDPR Article 32 requires you to protect personal data with appropriate security. Here is what that means for your website.
Outdated WordPress Plugins Are a Security Risk
Outdated WordPress plugins are the top attack vector for small business sites. Learn how to check, update and review your plugins.
SPF, DKIM and DMARC: Email Security in Plain Language
SPF, DKIM and DMARC explained simply. Learn what they do, why you need them and how to set them up for your domain.
Website Hacked? Here's What to Do Right Now
Your website has been hacked or shows signs of malware. Here are the steps to take right now to contain the damage and get back online.
What Does a Website Security Scan Check?
What a website security scan actually checks: SSL, headers, vulnerable libraries, outdated CMS, and more. Learn what the results mean and how to fix issues.
Why Your Business Emails End Up in Spam (And How to Fix It)
Business emails landing in spam? You're probably missing SPF, DKIM, or DMARC records. Here's what they are and how to set them up.
SSL Certificate: What It Is, Why You Need It
An SSL certificate encrypts data between your website and visitors. Here is what it does, why you need one and how to get one for free.
E-Commerce
"Buy Now" vs "Order": Why Your Button Text Matters Legally
EU law requires specific wording on order buttons. The wrong text could make your orders non-binding. Here is what your checkout button must say.
Dutch Webshop Compliance: Complete Checklist
A full checklist of legal requirements for online shops in the Netherlands. KVK, order buttons, withdrawal rights, pricing rules and more.
EU Checkout Page Requirements: Button Text, Pricing & Consent
EU rules for your checkout page: order button text, price display, withdrawal rights, and consent requirements. What you must show before the customer clicks Buy.
Discount Pricing Rules: The 30-Day Prior Price Requirement
EU Omnibus Directive requires showing the lowest price from the past 30 days when advertising a discount. Here is how it works.
EU Consumer Rights for Online Sellers: Plain-Language Guide
EU consumer protection law affects every online shop. Here are the rules you need to follow, explained without legal jargon.
The 14-Day Withdrawal Right: What Every Online Seller Must Know
EU law gives online shoppers 14 days to return purchases without reason. Here is what you must tell them and how to handle it.
Double Opt-in: Required or Not? It Depends on the Country
Double opt-in is required in Germany, recommended in Austria, and optional elsewhere in Europe. Here's what the law says in each country and how to set it up.
Newsletter Signup Forms: GDPR Requirements
Your newsletter signup form needs more than a checkbox. Here are the GDPR rules for email consent, what to store and how to avoid common mistakes.
Pre-checked Signup Boxes Are Illegal: Here's Why
Pre-checked checkboxes for newsletters and marketing don't count as valid consent under GDPR. The Planet49 ruling made this clear. Here's what to fix.
Email Marketing Consent: Country-by-Country Rules
Email marketing rules differ across Europe. Here are the consent requirements for the Netherlands, Germany, UK, Belgium and more.
The Soft Opt-in Exception: When You Can Email Without Consent
The soft opt-in lets you email existing customers without explicit consent. But strict conditions apply. Here is how it works.