Skip to main content

capitalone.com

Capital One

Explore Capital One’s Banking and Financial Services. Find out how our fee-free checking accounts make banking easy for students.

Financial Services & Fintech10 violations
1critical
4high
4medium
1low
71
At Risk30-day avg score
Sign Up to See Report

Top Issues Found on capitalone.com

The most severe open findings from our latest scan. Full evidence and step-by-step remediation are in the report.

  • critical

    Identity of data controller not declared

    GDPR · GDPR Art 13(1)(a) / 14(1)(a)

  • high

    Interactive control is not reachable by keyboard

    WCAG · WCAG 2.1 SC 2.1.1

  • high

    Tracking active before consent is given

    GDPR · GDPR Art 6(1)(a), ePrivacy Art 5(3)

  • high

    Legal basis for processing not declared

    GDPR · GDPR Art 13(1)(c) / 14(1)(c)

  • high

    Contact for privacy inquiries not provided

    GDPR · GDPR Art 13(1)(a),(b) / 14(1)(a),(b) / Art 37-39

  • medium

    Functional cookies set before consent

    GDPR · GDPR Art 6(1)(f), ePrivacy Art 5(3)

See all issues, evidence, and how to fix them →

Violation History

Daily detections over the past 12 months. Exact findings are in the full report.

Violation history is locked

Sign up free to see daily detections for capitalone.com

Sign up to unlock

What We Test

18 automated tests across 3 regulations. Expand any regulation to see individual checks — pass/fail results are in the full report.

This Page vs. Full Report

This page shows aggregate data only. The full report gives you everything you need to act.

FeatureThis pageFull Report
Overall compliance score
Violation count (last 3 months)
List of tests we run
Per-test pass / fail results
Specific findings per violation
Remediation recommendations
Screenshot evidence
HAR & DOM snapshot evidence
RFC 3161 timestamps
SHA-256 hash verification
Estimated fine exposure
Court-admissible evidence package

How Complyy Works

01

We act as a real user

Synthetic identities sign up, opt out, and submit deletion requests — just like a real person would.

02

We capture everything

Screenshots, network traffic, emails, and DOM snapshots are captured and hashed at every step.

03

You get court-ready evidence

All artifacts are SHA-256 hashed and RFC 3161 timestamped, making them legally admissible.

RFC 3161 Timestamped
SHA-256 Verified
Court-admissible
Real-user simulation

Frequently Asked Questions

Is capitalone.com GDPR compliant?
Complyy runs 9 automated GDPR checks against capitalone.com. The site currently holds an overall compliance score of 71/100 with 10 detected violations across all regulations. Per-test pass/fail results are available in the full report.
Which regulations is capitalone.com tested against?
capitalone.com is tested against GDPR, CCPA, WCAG - 18 automated checks in total. Every individual check is listed in the "What We Test" section on this page.
How often is capitalone.com scanned?
Complyy monitors capitalone.com on a recurring schedule and republishes the results after each completed scan, so this page reflects the latest available assessment.
How is the compliance score for capitalone.com calculated?
Every automated check contributes equally to the overall score, and findings within a check are weighted by severity (critical, high, medium, low). The score reflects the latest available scan results.

Get the Full Compliance Report for capitalone.com

10 violations detected — see exactly what they are and how to fix them.