What is GDPR?
A plain-language overview of the General Data Protection Regulation: who it applies to, what it covers, and what happens if you ignore it.
Read the overview →These short guides explain the essentials in plain language. Each page links directly to templates and services you can use right away.
A plain-language overview of the General Data Protection Regulation: who it applies to, what it covers, and what happens if you ignore it.
Read the overview →The concrete obligations most small businesses face under GDPR: records, legal bases, notices, and security.
See the key requirements →Lawfulness, fairness, transparency, purpose limitation, and other core ideas that shape every GDPR decision.
Learn the principles →Access, erasure, portability, objection and more: what people can ask you to do with their data, and how to respond.
Understand the rights →When are you a controller, when are you a processor, and why does it matter for contracts and liability?
See controller vs processor →Consent is not the only option. Understand the six lawful bases and which ones fit typical SME scenarios.
Explore lawful bases →Many GDPR tools stop at auto-generated policies or dashboards. We focus on real-world implementation: mapping your tools, adjusting your consent flows, documenting decisions, and training your team.
Typical clients: 2–50 staff, EU-based, online-first, using tools like Google Analytics, Meta Ads, HubSpot, Shopify, WordPress, or custom stacks.
A focused review for solo founders and micro teams. Understand your current risk and get a simple action list.
From €749 · Fixed price
One intensive day to align your website, notices, and key processes with GDPR in practice.
From €1,995 · One-time
Lightweight ongoing support for questions, updates, and changes in your tools or website.
From €99/month
Start with a quick checklist, then go deeper with DPIA templates, data processing agreements, and breach response forms, each one crafted specifically for your business, not a generic template.
A step-by-step list of common GDPR tasks for websites and small businesses.
View checklist →A simple, structured impact assessment template you can actually complete without a law degree.
What Is DPIA? →A starting point for controller–processor relationships tailored to typical SaaS and service providers.
Use the DPA template →Capture the details you need if something goes wrong, so you can respond quickly and correctly.
See breach form →Prefer to have someone walk through this with you? Contact Us and we'll use these tools together.
We work with founders, operations leaders, and in-house marketers who need GDPR to be clear, practical, and aligned with real-world tools.
Each guide explains typical data flows, tools, and risks for your industry, with example records and checklists.
Owner-led companies, agencies, and local service providers.
Shops using Shopify, WooCommerce, and custom carts.
B2B SaaS with product analytics, marketing automation, and CRMs.
Handling sensitive health information and appointment systems.
Advisors, accountants, and fintech tools operating in the EU.
Agencies and internal talent teams managing candidate data.
The GDPR is EU-wide, but each country has its own regulators, guidance, and practical expectations.
Working with the Belgian DPA and local guidance.
Key points from the Dutch data protection authority.
What to know about stricter expectations and Länder DPAs.
Practical guidance and examples from CNIL.
Important if you rely on Irish-based tech providers.
What Danish SMEs typically face in practice.
These are the questions we hear the most before an audit or compliance day. If your question isn't here, ask us directly.
Start with a free website snapshot, then choose whether you want a one-day implementation or a full audit. We keep it practical, focused, and in plain language.