We Test What Your Website Actually Does
Built in Stockholm, designed for EU regulatory reality. Behavioural compliance testing with human review on the calls that need judgement.
We clicked "Reject All" on a cookie banner. Then we checked if tracking actually stopped.
It didn't.
We tested 50 websites. Same story. Privacy policies said one thing. The websites did another. And nobody was checking.
So we built Vakteye — a tool that tests what actually happens when users say no.
The Problem We Solve
Most compliance tools check documents. They read your privacy policy and tick boxes.
We check behavior. We visit your site like a real user, click "Reject All," and verify whether tracking actually stops.
What others check
Documents, policies, checkboxes
What we check
Real behavior, live tracking, actual cookies
When IMY investigates, they won't read your policy. They'll test your site.
We help you find out what they'll find before they do.
Built in Sweden, For Europe
Sweden's IMY is one of Europe's most active GDPR enforcers. They've issued major fines and set precedents that shape compliance across the entire EU.
We built Vakteye with Nordic regulatory expertise — based on how the strictest European authorities interpret GDPR, ePrivacy, and NIS2.
Rigor. Designed for EU regulatory reality — from first scan to enforcement decision.
Based in Stockholm, Sweden. Building privacy-first compliance tools for Europe.
Meet the Team

Emil Eriksson
Head of Sales
Helps organizations navigate GDPR compliance and find the right audit strategy for their needs.

Tomas V. Johansson
Security Expert
Specialized in web security, vulnerability assessment, and privacy engineering.
How We Work
Automated Scanning
28 specialized tasks inspect your site the way regulators do — cookies, trackers, headers, vulnerabilities — all tested behaviourally against applicable law.
Human Review
Lower-confidence findings go to a review queue where an analyst decides. High-confidence findings are backed by behavioural proof. Confidence level is shown on every finding.
Certified Report
90-day compliance assessment with tamper-evident evidence. Every finding mapped to the applicable GDPR or NIS2 article.
By The Numbers
1,662
Legal text chunks indexed
28
Scanning Tasks
14
Legal Frameworks
100%
Human review on lower-confidence findings
Ready to See What We Find?
Get a behavioral compliance audit before regulators do it for you.