Skip to main content

spotify.com

Spotify

Web Player: Music for everyone

Media & Entertainment6 violations
2high
3medium
1low
82
Good30-day avg score
Sign Up to See Report

Top Issues Found on spotify.com

The most severe open findings from our latest scan. Full evidence and step-by-step remediation are in the report.

  • high

    Tracking active before consent is given

    GDPR · GDPR Art 6(1)(a), ePrivacy Art 5(3)

  • high

    Legal basis for processing not declared

    GDPR · GDPR Art 13(1)(c) / 14(1)(c)

  • medium

    Functional cookies set before consent

    GDPR · GDPR Art 6(1)(f), ePrivacy Art 5(3)

  • medium

    Right to complain not described

    GDPR · GDPR Art 13(2)(d) / 14(2)(e) / Art 77

  • medium

    input is missing an accessible label

    WCAG · WCAG 2.1 SC 1.3.1, 4.1.2

  • low

    No data breach notification commitment disclosed

    GDPR · GDPR Art 33-34 (breach notification)

See all issues, evidence, and how to fix them →

Violation History

Daily detections over the past 12 months. Exact findings are in the full report.

Violation history is locked

Sign up free to see daily detections for spotify.com

Sign up to unlock

What We Test

18 automated tests across 3 regulations. Expand any regulation to see individual checks — pass/fail results are in the full report.

This Page vs. Full Report

This page shows aggregate data only. The full report gives you everything you need to act.

FeatureThis pageFull Report
Overall compliance score
Violation count (last 3 months)
List of tests we run
Per-test pass / fail results
Specific findings per violation
Remediation recommendations
Screenshot evidence
HAR & DOM snapshot evidence
RFC 3161 timestamps
SHA-256 hash verification
Estimated fine exposure
Court-admissible evidence package

How Complyy Works

01

We act as a real user

Synthetic identities sign up, opt out, and submit deletion requests — just like a real person would.

02

We capture everything

Screenshots, network traffic, emails, and DOM snapshots are captured and hashed at every step.

03

You get court-ready evidence

All artifacts are SHA-256 hashed and RFC 3161 timestamped, making them legally admissible.

RFC 3161 Timestamped
SHA-256 Verified
Court-admissible
Real-user simulation

Compliance Contacts

Contact addresses our system detected on this website, for informational purposes.

Frequently Asked Questions

Is spotify.com GDPR compliant?
Complyy runs 9 automated GDPR checks against spotify.com. The site currently holds an overall compliance score of 82/100 with 6 detected violations across all regulations. Per-test pass/fail results are available in the full report.
Which regulations is spotify.com tested against?
spotify.com is tested against GDPR, CCPA, WCAG - 18 automated checks in total. Every individual check is listed in the "What We Test" section on this page.
How often is spotify.com scanned?
Complyy monitors spotify.com on a recurring schedule and republishes the results after each completed scan, so this page reflects the latest available assessment.
How is the compliance score for spotify.com calculated?
Every automated check contributes equally to the overall score, and findings within a check are weighted by severity (critical, high, medium, low). The score reflects the latest available scan results.

Get the Full Compliance Report for spotify.com

6 violations detected — see exactly what they are and how to fix them.