Every website that collects data, e.g. through a form or analytics, needs a GDPR-compliant privacy policy. It is also a signal of the business’s credibility.
What it means in practice
A privacy policy is a document on the website explaining which personal data the business collects, why, how long it keeps it, who receives it and what rights users have. It also covers cookies.
Why it matters for your business
GDPR requires it for every website that collects data – even just through a contact form or analytics. It’s also a credibility signal for customers, payment providers and Google.
Examples and good practice
- Give full details of the data controller.
- Describe each purpose: form, newsletter, analytics, ads.
- List external tools, e.g. Google Analytics.
- Link it in the footer and next to forms.
How Novi handles it
Novi websites have space for a privacy policy and footer links. The GDPR and cookie package provides a ready document matched to the modules on your website.