Skip to main content

General Data Protection Regulation (GDPR)

The privacy law that changed the internet.

What is the GDPR?

The General Data Protection Regulation (GDPR) is the European Union's comprehensive privacy law that took effect on May 25, 2018.

Although created by the European Union, the GDPR applies to organizations anywhere in the world that collect or process the personal information of people located in the EU.

Today, the GDPR is considered the global benchmark for privacy legislation and has influenced privacy laws throughout the United States and around the world.

Does the GDPR apply to my business?

It might.

The GDPR doesn't depend on where your business is located—it depends on whose personal data you collect.

Your organization may fall under the GDPR if you:

• Sell products or services to people in the European Union.
• Market to individuals located in the EU.
• Track or monitor the online behavior of EU visitors.
• Process personal information belonging to EU residents.

Even businesses located entirely within the United States can be subject to GDPR requirements if they serve European customers.

What rights does the GDPR provide?

The GDPR gives individuals significant control over their personal information, including:

• The right to know what personal data is collected.
• The right to access their personal information.
• The right to correct inaccurate data.
• The right to delete personal information ("Right to be Forgotten").
• The right to restrict or object to certain processing.
• The right to receive their data in a portable format.
• Rights related to automated decision-making and profiling.

Organizations covered by the GDPR must also demonstrate accountability for how personal information is collected, processed, stored, and protected.

Related resources.

• Cookie Consent
• Google Consent Mode
• Privacy Resource Center

What does this mean for your website?

Every website is different.

Some organizations may only need to review their privacy policies. Others may benefit from implementing a Consent Management Platform (CMP), configuring Google Consent Mode, reviewing third-party technologies, or updating how visitor information is collected.

Understanding which privacy requirements apply depends on your business, your website, and the technologies you use.

How One Eleven Web Design can help.

We help businesses understand what technologies are installed on their websites and implement privacy-focused technical solutions.

Our services include:

• Website privacy reviews
• Consent Management Platform (CMP) implementation
• Google Consent Mode configuration
• Cookie and tracking technology reviews
• Ongoing website privacy management

We focus on the technical implementation while working alongside your legal or compliance advisors when appropriate.

Need help implementing privacy best practices?

Whether you're updating your website's privacy policy, implementing cookie consent, or configuring Google Consent Mode, we're here to help you navigate the technical side of website privacy.

Schedule a Privacy Review →

Legal notice

One Eleven Web Design helps businesses implement website privacy and accessibility solutions, but we are not a law firm and do not provide legal advice. The information in this Resource Center is provided for general educational purposes only. Because privacy laws, regulations, and court decisions continue to evolve, businesses should consult qualified legal counsel regarding their specific compliance obligations.

Built in California.
Trusted coast to coast.

Whether you’re in California or across the country, you’ll receive the same responsive service, predictable pricing, and a professionally managed website built on the Pipeline™ Framework—all backed by a team that’s only a call, text, or email away.

Ready to ride the wave?