Products and Pricing

Web Auditor

Detect non-compliant consent banners, trackers, cookies, and data flows on your websites

Starts at $100

per website/month billed annually

No integration or developer effort needed

KEY FEATURES
Privacy risk monitoring for websites in all locations
3rd party tracker, cookie, and script detection
Data flow maps to 3rd parties based on consent
Consent banner and link visibility checks
40+ pre-built compliance checks for GDPR, CPRA & more
Sensitive data leak detection
Additional FEATURES
Tag manager & CDP integrations: 3rd party & data flow detection
Automated dev tickets via ticketing tool integrations (e.g., Jira)
OneTrust Integration
Dedicated customer success manager
PRICING NOTES
Volume-based discounts available
App Auditor

Detect non-compliant consent banners, trackers, SDKs, and data flows in mobile apps

Starts at $1,000

per app/month billed annually

No integration or developer effort needed

KEY FEATURES
Privacy risk monitoring for mobile apps in all locations
3rd party tracker and SDK detection
Data flow maps to 3rd parties based on consent
Sensitive permission detection
Consent banner visibility checks
40+ pre-built compliance checks for GDPR, CPRA, & more
Sensitive data leak detection
Additional FEATURES
Tag manager & CDP integrations: 3rd party & data flow detection
Automated dev tickets via ticketing tool integrations (e.g., Jira)
OneTrust Integration
Dedicated customer success manager
PRICING NOTES
iOS and Android versions = 2 apps
Volume-based discounts available
Platform

Build dynamic data maps, detect privacy risks, and auto-populate assessments for all software products: web, mobile, backend, etc.

Starts at $4,200

 per month billed annually for up 200 developers

Integrate via your source code management tool

KEY FEATURES
Privacy for all web, app, & backend software products
Org-wide data maps: 3rd parties, personal data elements, and data flows to 3rd parties
Autopopulated RoPAs, PIAs, & DPIAs
Pre-built & custom compliance checks for GDPR, CPRA, & more
Sensitive data leak detection
Risk detection in the dev process
Additional FEATURES
Real-time privacy guidance to developers via dev tool integrations
Tag manager & CDP integrations: 3rd party & data flow detection
Automated dev tickets via ticketing tool integrations (e.g., Jira)
OneTrust Integration
Dedicated customer success manager
Enterprise

For organizations with 200+ developers, get full personal data visibility and privacy governance

Custom pricing that scales with your business
KEY FEATURES
All features included with Web Auditor
All features included with App Auditor
All features included with Platform

Feel free to send us a message for any queries

More information

How does the Web Auditor product work?

For the Web Auditor product, Privado runs a scan of your live websites by simulating user behavior and recording data flow activity.

By simulating each consent banner action (accept, reject, or no action) in each relevant location, Privado can detect if consent banners do not display properly and if there are any 3rd party cookies or data flows that do not honor consent requirements for that user’s location.

For example, to comply with GDPR in Europe, Privado will flag any 3rd party cookies or data sent to 3rd parties if the user opts out or takes no action.

Additionally, Web Auditor provides a live inventory of trackers/pixels, cookies, data flows to 3rd parties for your websites. Data flow visibility enables detection of sensitive data leaks that should not occur regardless of consent.

No integration or implementation is required. Privado simply needs the URLs and the locations to run scans.

How does the App Auditor product work?

For the App Auditor product, Privado runs a scan of your live mobile app by simulating user behavior and recording data flow activity.

By simulating each consent banner action (accept, reject, or no action) in each app, Privado can detect if consent banners do not display properly and if there are any 3rd party data flows that do not honor consent requirements for that user’s location.

For example, to comply with GDPR in Europe, Privado will flag any 3rd party SDKs that collect user data if the user opts out or takes no action.

Additionally, App Auditor provides a live inventory of SDKs, data elements, and data flows to 3rd parties for each app. Data flow visibility enables detection of sensitive data leaks that should not occur regardless of consent.

No integration or implementation is required. Privado simply needs the latest app files (APK/IPA) to run scans.

How does the Platform product work?

To provide the most comprehensive personal data visibility and privacy governance across all software products, Privado scans the code that runs your websites, mobile apps, and other software developed by your engineers.

Because code contains the logic for how personal data is collected, used, stored, and shared, code scanning enables dynamic data maps, auto-risk discovery, risk prevention in the dev process, and auto-populated assessments like RoPAs, PIAs, and DPIAs.

Privado’s dynamic data maps include a full inventory of personal data elements, data categories, 3rd parties, APIs, databases, and the data flows between them. Customers leverage out-of-the-box and custom privacy policy workflows to detect risks each time the dynamic data map is updated from recurring code scans. No questionnaires or assessments are needed to build data maps or detect risk.

Privado scans code by integrating with a company’s source code management tool on-prem or in the cloud. The most popular source code management tools are GitHub, GitLab, and Bitbucket.

Privado can scan the code of all live software products as well as scan code during the development process when engineers submit new code for review. Therefore, Privado can detect risks live in your products and prevent risks before they go live.  

How are each of the Privado products implemented?

Web Auditor: No integration or implementation is required. Privado simply needs the URLs and the locations to run scans.

App Auditor: No integration or implementation is required. Privado simply needs the latest app files (APK/IPA) to run scans.

Platform: Privado scans code by integrating with a company’s source code management tool on-prem or in the cloud. The most popular source code management tools are GitHub, GitLab, and Bitbucket.

What support resources does Privado offer to ensure a positive ROI?

All Privado customers are assigned a dedicated customer success manager who leads onboarding and provides ongoing consultation and support at no additional cost.

Privado also provides strategic consultations from leading technical privacy expert, Nishant Bhajaria, at no additional cost.

During onboarding, Privado provides comprehensive documentation and technical support to complete implementation. Web Auditor and App Auditor do not require any technical implementation. Platform requires minimal implementation support, typically completed in 1-3 weeks.

Does Privado integrate with OneTrust?

Yes, Privado integrates with OneTrust, enabling the personal data inventory, assessments, and risks in OneTrust to be automatically updated with accurate, real-time information from Privado.

Does Privado help automate compliance for GDPR, CPRA/CCPA, CIPA, and PIPEDA?

Yes, Privado offers the leading solutions to proactively mitigate GDPR, CPRA/CCPA, CIPA, and PIPEDA privacy risks in your software products: websites, mobile apps, backend software, etc.

Most privacy risks start in software products because software products collect and share personal data throughout an organization and to third parties. Privado is designed to help companies comply with GDPR, CPRA/CCPA, CIPA, and PIPEDA at scale without slowing down the business.

How does Privado count developers for Platform pricing?

For Platform, Privado can scan all products and repositories within a source code management tool or just select products and repositories according to customer’s needs.

Privado counts developers for pricing according to the number of developers/engineers with active accounts in your source code management tools, and that number can be limited to only the developers involved with products and repositories that Privado is scanning.

How do you protect your customers’ data?

Privado solutions are data secure and code secure by design. Privado does not scan or access any personal data, only software and code. Customer code is never stored or shared and is never used to train Privado models.

Privado is SOC 2 certified and combines enterprise-class security features with comprehensive audits of our applications, systems, and networks to ensure customer and business data is always protected. Take a look at the security measures we take to protect your business and your customers.