
Anna Hellström
Lead Compliance Analyst
“The red period in the proof ledger is what we look at every week — so you don't have to.”
30 min · live scan · no sales pressure

In 2023-2024, three companies were fined by IMY for the same mistake. Here is Avanza's case, day by day.
†Same pattern, same period—Apoteket was fined 37 million SEK (29 Aug 2024). Apohem was fined 8 million SEK (29 Aug 2024). Three companies. One activated sub-function. 60 million SEK in total sanctions.
Avanza took 19 months. You take 7 days.
Three companies. 60 million SEK in fines.
Same mistake: trackers they didn’t know about.
Avanza discovered it after 19 months.
Vakteye would have caught it on day 1.
Every week, signed.
From behavioral test to delivered report — four steps, AI for scale and human judgement where it counts.
Click ”Reject All”, watch every network request, snapshot cookies and localStorage. Behavioral test, not a checkbox.
Click ”Reject All”, watch every network request, snapshot cookies and localStorage. Behavioral test, not a checkbox.
Pattern matching plus AI models map each finding to GDPR article, ePrivacy and the relevant regulator decision.
Pattern matching plus AI models map each finding to GDPR article, ePrivacy and the relevant regulator decision.
High-confidence findings are backed by behavioural proof and publish directly. Lower-confidence findings go to a review queue where an analyst decides.
High-confidence findings are backed by behavioural proof and publish directly. Lower-confidence findings go to a review queue where an analyst decides.
Hash-verified, statute-tied. An input for your DPO and your legal team — not an alarm light.
Hash-verified, statute-tied. An input for your DPO and your legal team — not an alarm light.
Vad hände på er sajt mellan revisionerna?
12 månader för en typisk kund. Första halvan var sajten oövervakad. Andra halvan: signerad och IMY-redo varje vecka.
Mönster från Vakteyes pilotkunder — SaaS, e-handel, vård (2025–2026).
Er ledger startar vid första skanningen.
Inga interna larm. Ingen visste något förrän någon utifrån påpekade det.
Varje vecka en signerad rapport från en compliance-analytiker. Klar innan IMY frågar.
CMP-fel: "Avvisa alla"-klick registreras som "Acceptera". Aktivt hela veckan.
Marketing-toggles förmarkerade i CMP-inställningar.
Tre företag fick 60 MSEK i IMY-böter 2024 för fynd som låg öppna mellan revisionerna. Med Vakteye har ni svaret klart innan frågan ställs.
Anonymiserat exempel. Alla fyndtyper, lagrumshänvisningar och IMY-tillsynsbeslut är verkliga och dokumenterade.
GDPR · NIS2 · ePrivacy
Six layers of continuous monitoring across every Swedish and EU framework. The work your annual audit never has time for.
Your privacy policy makes promises. Your site breaks several of them. You see exactly which ones.
GDPR Art 13
We click ”Reject All” for you and check whether tracking actually stops. Behavioral proof, not checkbox compliance.
ePrivacy · GDPR Art 6–7
We map every third-country transfer and flag recipients without DPF certification or valid SCCs. Using Google Analytics without adequate Schrems II safeguards cost Tele2 SEK 12M.
Schrems II · GDPR Art 44–46
Active DAST scanning, security headers, TLS configuration and exposed services. SportAdmin paid SEK 6M for IT-security failures.
NIS2 · GDPR Art 32
Canvas, WebGL, audio fingerprinting and session replay tools. We continuously watch the most-used fingerprinting services.
ePrivacy Art 5(3)
Time-stamped and tamper-evident reports. Every finding tied to a statute and a relevant IMY decision — material for your own compliance work.
IMY · forensiska bevis
Verified enforcement decisions and active investigations from IMY, CNIL and DPC — every row links to the primary source.
Vakteye isn't just software. Behind every signed proof package sits an analyst who answers — by email, phone, or Slack.

Lead Compliance Analyst
“The red period in the proof ledger is what we look at every week — so you don't have to.”

Legal Counsel
“Every finding we flag ties to a statute and a precedent. You learn what — and why it matters to IMY.”

Senior Security Auditor
“NIS2 isn't a document you read once. It's a continuous exercise — and we run it for you.”

Head of Research
“When EDPB shifts interpretation, you're already compliant — before IMY has time to react.”
Research, IMY enforcement, and practical compliance guides — from the team building the evidence ledger.
Browse by topic
Two emails a month. No sales pitch.